Description
Microsoft Exchange Server Remote Code Execution Vulnerability
Exploits (12)
nomisec
WORKING POC
95 stars
by balki97 · remote-auth
https://github.com/balki97/OWASSRF-CVE-2022-41082-POC
nomisec
SCANNER
3 stars
by notareaperbutDR34P3r · infoleak
https://github.com/notareaperbutDR34P3r/http-vuln-CVE-2022-41082
nomisec
WORKING POC
1 stars
by bigherocenter · remote-auth
https://github.com/bigherocenter/CVE-2022-41082-POC
nomisec
WRITEUP
by CyprianAtsyor · poc
https://github.com/CyprianAtsyor/LetsDefend-CVE-2022-41082-Exploitation-Attempt
nomisec
SCANNER
by notareaperbutDR34P3r · infoleak
https://github.com/notareaperbutDR34P3r/vuln-CVE-2022-41082
metasploit
WORKING POC
EXCELLENT
by Orange Tsai, Spencer McIntyre, DA-0x43-Dx4-DA-Hx2-Tx2-TP-S-Q, Piotr Bazydło, Rich Warren, Soroush Dalili · rubypocwindows
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/exchange_proxynotshell_rce.rb
patchapalooza
SCANNER
by NitinYadav00 · remote
https://github.com/NitinYadav00/Exploit-Microsoft-Exchange-Server-
References (8)
Core 8
Core References
Exploit, Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/170066/Microsoft-Exchange-ProxyNotShell-Remote-Code-Execution.html
Patch, Vendor Advisory
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41082
Third Party Advisory, US Government Resource
https://www.kb.cert.org/vuls/id/915563
Third Party Advisory
https://www.secpod.com/blog/microsoft-november-2022-patch-tuesday-patches-65-vulnerabilities-including-6-zero-days/
Third Party Advisory
https://www.vicarius.io/vsociety/posts/cve-2022-41082-microsoft-exchange-server-remote-code-execution-vulnerability-detection-script
Third Party Advisory
https://www.vicarius.io/vsociety/posts/cve-2022-41082-microsoft-exchange-server-remote-code-execution-vulnerability-mitigation-script
US Government Resource
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-41082
Vendor Advisory vendor-advisory
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41082
Scores
CVSS v3
8.0
EPSS
0.9074
EPSS Percentile
99.6%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
active
Automatable
no
Technical Impact
total
Details
CISA KEV
2022-09-30
VulnCheck KEV
2022-09-29
InTheWild.io
2022-09-30
ENISA EUVD
EUVD-2022-44326
Ransomware Use
Confirmed
CWE
CWE-502
Status
published
Products (3)
microsoft/exchange_server
2013 cumulative_update_23
microsoft/exchange_server
2016 cumulative_update_22 (2 CPE variants)
microsoft/exchange_server
2019 cumulative_update_11 (2 CPE variants)
Published
Oct 03, 2022
KEV Added
Sep 30, 2022
Tracked Since
Feb 18, 2026