Microsoft Exchange Server Remote Code Execution Vulnerability
References
| Link | Resource |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529 | Patch Vendor Advisory |
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529 | Patch Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-21529 | US Government Resource |
| https://www.microsoft.com/en-us/security/blog/2026/04/06/storm-1175-focuses-gaze-on-vulnerable-web-facing-assets-in-high-tempo-medusa-ransomware-operations/ | Technical Description |
Configurations
Configuration 1 (hide)
|
History
14 Apr 2026, 14:44
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-21529 - US Government Resource | |
| References | () https://www.microsoft.com/en-us/security/blog/2026/04/06/storm-1175-focuses-gaze-on-vulnerable-web-facing-assets-in-high-tempo-medusa-ransomware-operations/ - Technical Description | |
| CWE |
13 Apr 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 07:43
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529 - Patch, Vendor Advisory |
29 May 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-502 |
Information
Published : 2023-02-14 20:15
Updated : 2026-04-14 14:44
NVD link : CVE-2023-21529
Mitre link : CVE-2023-21529
CVE.ORG link : CVE-2023-21529
JSON object : View
Products Affected
microsoft
- exchange_server
CWE
CWE-502
Deserialization of Untrusted Data
