CVE-2024-21410

critical

Description

Microsoft Exchange Server Elevation of Privilege Vulnerability

References

https://securityaffairs.com/161217/security/bsi-warns-vulnerable-microsoft-exchange.html

https://www.theregister.com/2024/03/28/germany_microsoft_exchange_patch/

https://www.bleepingcomputer.com/news/security/germany-warns-of-17k-vulnerable-microsoft-exchange-servers-exposed-online/?&web_view=true

https://www.zdnet.com/article/everything-you-need-to-know-about-microsoft-exchange-server-hack

https://www.bleepingcomputer.com/news/security/germany-warns-of-17k-vulnerable-microsoft-exchange-servers-exposed-online/

https://www.zdnet.com/article/everything-you-need-to-know-about-microsoft-exchange-server-hack/#ftag=RSSbaffb68

https://securityaffairs.com/159424/hacking/28000-vulnerable-microsoft-exchange-servers.html

https://www.bleepingcomputer.com/news/security/over-28-500-exchange-servers-vulnerable-to-actively-exploited-bug/?&web_view=true

https://www.securityweek.com/recent-zero-day-could-impact-up-to-97000-microsoft-exchange-servers/

https://www.bleepingcomputer.com/news/security/over-28-500-exchange-servers-vulnerable-to-actively-exploited-bug/

https://securityaffairs.com/159245/security/cisa-exchange-cisco-asa-ftd-known-exploited-vulnerabilities-catalog.html

https://thecyberthrone.in/2024/02/16/cisa-adds-outlook-and-ftd-vulnerabilities-to-its-kev-catalog/

https://thecyberthrone.in/2024/02/16/microsoft-exchange-server-vulnerability-actively-exploited-cve-2024-21410/

https://www.hivepro.com/threat-advisory/microsofts-february-2024-patch-tuesday-addresses-two-zero-day-vulnerabilities/

https://www.bleepingcomputer.com/news/security/microsoft-new-critical-exchange-bug-exploited-as-zero-day/?&web_view=true

https://www.bleepingcomputer.com/news/security/microsoft-new-critical-exchange-bug-exploited-as-zero-day/

https://thehackernews.com/2024/02/critical-exchange-server-flaw-cve-2024.html

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21410

Details

Source: Mitre, NVD

Published: 2024-02-13

Updated: 2024-04-11

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical