Microsoft Exchange Admin Center Detected

info Web App Scanning Plugin ID 114903

Synopsis

Microsoft Exchange Admin Center Detected

Description

This is an informational plugin to inform the user that the scanner has detected a publicly accessible Microsoft Exchange Admin Center instance on the target application.

Solution

If the application is not expected to be public, restrict access using a .htaccess file, limiting access to known IP Addresses.

See Also

https://learn.microsoft.com/en-us/exchange/exchange-admin-center

Plugin Details

Severity: Info

ID: 114903

Type: remote

Published: 7/3/2025

Updated: 7/3/2025

Scan Template: basic, full, pci, scan

Vulnerability Information

CPE: cpe:2.3:a:microsoft:exchange_server:*:*:*:*:*:*:*:*