Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Exchange Server
Total 228 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-1987 1 Microsoft 4 Exchange Server, Windows 2000, Windows Server 2003 and 1 more 2023-11-07 7.5 HIGH N/A
Buffer overflow in Collaboration Data Objects (CDO), as used in Microsoft Windows and Microsoft Exchange Server, allows remote attackers to execute arbitrary code when CDOSYS or CDOEX processes an e-mail message with a large header name, as demonstrated using the "Content-Type" string.
CVE-1999-0945 1 Microsoft 1 Exchange Server 2023-11-07 5.0 MEDIUM N/A
Buffer overflow in Internet Mail Service (IMS) for Microsoft Exchange 5.5 and 5.0 allows remote attackers to conduct a denial of service via AUTH or AUTHINFO commands.
CVE-1999-0682 1 Microsoft 1 Exchange Server 2023-11-07 5.0 MEDIUM N/A
Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled.
CVE-2002-0698 1 Microsoft 1 Exchange Server 2023-11-07 7.5 HIGH N/A
Buffer overflow in Internet Mail Connector (IMC) for Microsoft Exchange Server 5.5 allows remote attackers to execute arbitrary code via an EHLO request from a system with a long name as obtained through a reverse DNS lookup, which triggers the overflow in IMC's hello response.
CVE-2021-41348 1 Microsoft 1 Exchange Server 2023-08-01 5.2 MEDIUM 8.0 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-34453 1 Microsoft 1 Exchange Server 2023-08-01 5.0 MEDIUM 7.5 HIGH
Microsoft Exchange Server Denial of Service Vulnerability
CVE-2021-26427 1 Microsoft 1 Exchange Server 2023-08-01 5.8 MEDIUM 9.0 CRITICAL
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-41350 1 Microsoft 1 Exchange Server 2023-08-01 4.3 MEDIUM 6.5 MEDIUM
Microsoft Exchange Server Spoofing Vulnerability
CVE-2022-24463 1 Microsoft 1 Exchange Server 2023-06-29 4.0 MEDIUM 6.5 MEDIUM
Microsoft Exchange Server Spoofing Vulnerability
CVE-2022-23277 1 Microsoft 1 Exchange Server 2023-06-29 6.5 MEDIUM 8.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2022-41079 1 Microsoft 1 Exchange Server 2023-06-13 N/A 8.0 HIGH
Microsoft Exchange Server Spoofing Vulnerability
CVE-2022-41123 1 Microsoft 1 Exchange Server 2023-06-13 N/A 7.8 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2022-41078 1 Microsoft 1 Exchange Server 2023-06-13 N/A 8.0 HIGH
Microsoft Exchange Server Spoofing Vulnerability
CVE-2022-24516 1 Microsoft 1 Exchange Server 2023-06-01 N/A 8.0 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2022-21979 1 Microsoft 1 Exchange Server 2023-06-01 N/A 4.8 MEDIUM
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2022-24477 1 Microsoft 1 Exchange Server 2023-06-01 N/A 8.0 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2022-21980 1 Microsoft 1 Exchange Server 2023-06-01 N/A 8.0 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2022-30134 1 Microsoft 1 Exchange Server 2023-05-31 N/A 6.5 MEDIUM
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-1999-0993 1 Microsoft 1 Exchange Server 2022-08-17 7.5 HIGH N/A
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.
CVE-1999-0284 2 Ibm, Microsoft 2 Lotus Domino Mail Server, Exchange Server 2022-08-17 7.5 HIGH N/A
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.