Record summary

CVE-2022-34692 has a selected CVSS score of 5.3 (medium).

Description

Microsoft Exchange Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-21979, CVE-2022-30134.

Description source: GitHub Advisory

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Jun 5, 2025 · Source: CVE List

Affected products and versions

4
ProductSourceVersion rangeStatus

Microsoft Exchange Server 2016 Cumulative Update 22

Browse Microsoft / Microsoft Exchange Server 2016 Cumulative Update 22
CVE List15.0.0 to < 15.01.2375.031affected

Microsoft Exchange Server 2016 Cumulative Update 23

Browse Microsoft / Microsoft Exchange Server 2016 Cumulative Update 23
CVE List15.01.0 to < 15.01.2507.012affected

Microsoft Exchange Server 2019 Cumulative Update 11

Browse Microsoft / Microsoft Exchange Server 2019 Cumulative Update 11
CVE List15.02.0 to < 15.02.0986.029affected

Microsoft Exchange Server 2019 Cumulative Update 12

Browse Microsoft / Microsoft Exchange Server 2019 Cumulative Update 12
CVE List15.02.0 to < 15.02.1118.012affected

References

3