Record summary

CVE-2021-28482 has a selected CVSS score of 8.8 (high); EIP currently links 2 repository PoCs. VulnCheck reports CVE-2021-28482 use in known ransomware campaigns.

Description

Microsoft Exchange Server Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-28480, CVE-2021-28481, CVE-2021-28483.

Description source: GitHub Advisory

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Aug 17, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck
Ransomware use
Observed · VulnCheck

Available material

Repository PoCs
2

Affected products and versions

6
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Microsoft Exchange Server 2013 Cumulative Update 23

Browse Microsoft / Microsoft Exchange Server 2013 Cumulative Update 23
CVE List15.00.0 to < 15.00.1497.015affected

Microsoft Exchange Server 2016 Cumulative Update 19

Browse Microsoft / Microsoft Exchange Server 2016 Cumulative Update 19
CVE List15.01.0 to < 15.01.2176.012affected

Microsoft Exchange Server 2016 Cumulative Update 20

Browse Microsoft / Microsoft Exchange Server 2016 Cumulative Update 20
CVE List15.01.0 to < 15.01.2242.008affected

Microsoft Exchange Server 2019 Cumulative Update 8

Browse Microsoft / Microsoft Exchange Server 2019 Cumulative Update 8
CVE List15.02.0 to < 15.02.0792.013affected

Microsoft Exchange Server 2019 Cumulative Update 9

Browse Microsoft / Microsoft Exchange Server 2019 Cumulative Update 9
CVE List15.02.0 to < 15.02.0858.010affected

Proofs of concept

2

Repository PoCs

GitHubShadow0ps/CVE-2021-28482-Exchange-POCRepository PoCby Shadow0psStars: 46Not analyzed1 file

12.6 KiB

GitHub

PoC details
GitHubKevinWorst/CVE-2021-28482_ExploitRepository PoCby KevinWorstStars: 0Not analyzed2 files

239.8 KiB

GitHub

PoC details

References

2