CVE-2020-17144

HIGH KEV

Microsoft Exchange - RCE

Title source: llm

Description

Microsoft Exchange Remote Code Execution Vulnerability

Exploits (5)

nomisec WORKING POC 159 stars
by zcgonvh · remote-auth
https://github.com/zcgonvh/CVE-2020-17144
nomisec WORKING POC 157 stars
by Airboi · remote-auth
https://github.com/Airboi/CVE-2020-17144-EXP
patchapalooza WORKING POC
by delete_user · poc
https://gitee.com/delete_user/CVE-2020-17144-EXP
patchapalooza WORKING POC
by delete_user · poc
https://gitee.com/delete_user/CVE-2020-17144
patchapalooza WORKING POC
by h1d3r · poc
https://gitee.com/h1d3r/CVE-2020-17144

Scores

CVSS v3 8.4
EPSS 0.9270
EPSS Percentile 99.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H

Exploitation Intel

CISA KEV 2021-11-03
VulnCheck KEV 2021-11-03
InTheWild.io 2021-07-23
ENISA EUVD EUVD-2020-9098

Classification

CWE
CWE-502
Status published

Affected Products (1)

microsoft/exchange_server

Timeline

Published Dec 10, 2020
KEV Added Nov 03, 2021
Tracked Since Feb 18, 2026