MS17-015: Security Update for Microsoft Exchange Server (4013242)
High Nessus Plugin ID 97744
SynopsisThe remote Microsoft Exchange Server is affected by multiple vulnerabilities.
DescriptionThe remote Microsoft Exchange Server is missing a security update. It is, therefore, affected by an elevation of privilege vulnerability in Outlook Web Access (OWA) due to improper handling of web requests. An unauthenticated, remote attacker can exploit this issue, via a specially crafted email containing a malicious link or attachment, to execute arbitrary script code, inject content, or disclose sensitive information.
SolutionMicrosoft has released a set of patches for Exchange Server 2013 and 2016.