Microsoft Exchange Server Remote Code Execution Vulnerability
Published: 2022-09-30
Microsoft has confirmed reports of two zero-day vulnerabilities in Microsoft Exchange Server that have been exploited in the wild. Patches are not yet available.
https://www.kb.cert.org/vuls/id/915563
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41082
https://thehackernews.com/2026/06/new-sharkloader-malware-deploys-cobalt.html
https://securelist.com/strikeshark-campaign/120326/
https://www.theregister.com/2025/06/04/play_ransomware_infects_900_victims/
https://www.edgescan.com/wp-content/uploads/2024/03/2023-Vulnerability-Statistics-Report.pdf
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-352a
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-215a
https://www.mandiant.com/resources/blog/zero-days-exploited-2022
https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report
https://www.tenable.com/blog/microsofts-feb-2024-patch-tuesday-cve-2024-21351-cve-2024-21412
https://www.tenable.com/blog/aa23-215a-2022s-top-routinely-exploited-vulnerabilities
https://www.tenable.com/blog/microsofts-february-2023-patch-tuesday-addresses-75-cves-cve-2023-23376
https://www.tenable.com/blog/microsofts-october-2022-patch-tuesday-addresses-84-cves-cve-2022-41033
https://github.com/CyprianAtsyor/LetsDefend-CVE-2022-41082-Exploitation-Attempt
https://github.com/pakaremon/CyberAttack_CVE_Microsoft_Exchange_Serve
https://github.com/Phemz0/UDMQueries
https://github.com/Phemz0/SocPrimeAreTrash
https://github.com/balki97/OWASSRF-CVE-2022-41082-POC
https://github.com/balki97/NotProxyShellHunter-CVE-2022-41082-POC
https://github.com/LivingFree8/CVE-2022-41082-RCE-POC
https://github.com/Adynervi/CVE-2022-41082-RCE-PoC
https://github.com/sikkertech/CVE-2022-41082
https://github.com/vib3zz/CVE-2022-41082-RCE-POC
https://github.com/stat1st1c/CVE-2022-41082-RCE-POC
https://github.com/backcr4t/CVE-2022-41082-MASS-RCE
https://github.com/backcr4t/CVE-2022-41082-RCE
https://github.com/backcr4t/CVE-2022-41082-RCE-POC
https://github.com/rjsudlow/proxynotshell-IOC-Checker
https://github.com/gitzero0/ProxyNotShell
https://github.com/b3wT/CVE-2022-41082-MASS-SCANNER
https://github.com/kevibeaumont/CVE-2022-41082-RCE-POC
https://github.com/ZephrFish/NotProxyShellScanner
https://github.com/kevbeaumont/CVE-2022-41082-RCE-POC
https://github.com/kev-beaumont/CVE-2022-41082-RCE-POC
https://github.com/k1vin-beaumont/CVE-2022-41082-RCE-POC
https://github.com/krc0m/CVE-2022-41082
https://github.com/mr-r3b00t/NotProxyShellHunter
https://github.com/Diverto/nse-exchange
https://github.com/spher0X/CVE-2022-41082-RCE
https://github.com/0daylabin/ProxyNotShell
https://github.com/TimWallbey/CVE-2022-41082-RCE
https://github.com/revers0id/CVE-2022-41082-PoC
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-41082
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41082
Published: 2022-10-03
Updated: 2026-06-17
Named Vulnerability: ProxyNotShellKnown Exploited Vulnerability (KEV)
Base Score: 9
Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C
Severity: High
Base Score: 8
Vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.9997