CVE-2021-33766HighCVSS 7.3

Microsoft Exchange Server Information Disclosure Vulnerability

Published
July 13, 2021
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is Personally Identifiable Information (PII).

🎯 Affected products5

  • Microsoft Exchange Server 2013 Cumulative Update 23
  • Microsoft Exchange Server 2016 Cumulative Update 19
  • Microsoft Exchange Server 2016 Cumulative Update 20
  • Microsoft Exchange Server 2019 Cumulative Update 8
  • Microsoft Exchange Server 2019 Cumulative Update 9

✅ Remediation

KB5001779 (Security Update) — fixed build 15.02.0858.010 KB5001779 (Security Update) — fixed build 15.01.2242.008 KB5001779 (Security Update) — fixed build 15.00.1497.015 KB5001779 (Security Update) — fixed build 15.01.2176.012 KB5001779 (Security Update) — fixed build 15.02.0792.013

🔗 References (7)