[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft Exchange Server Elevation of Privilege Vulnerability - CVE-2018-8152

ID: oval:org.secpod.oval:def:45362Date: (C)2018-05-09   (M)2024-03-26
Class: VULNERABILITYFamily: windows




An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests. An attacker who successfully exploited this vulnerability could perform script/content injection attacks and attempt to trick the user into disclosing sensitive information. To exploit the vulnerability, an attacker could send a specially crafted email message containing a malicious link to a user. Alternatively, an attacker could use a chat client to social engineer a user into clicking the malicious link.

Platform:
Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8.1
Microsoft Windows 8
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Product:
Microsoft Exchange Server 2016
Reference:
CVE-2018-8152
CVE    1
CVE-2018-8152
CPE    3
cpe:/a:microsoft:exchange_server:2016
cpe:/a:microsoft:exchange_server:2016:cu8
cpe:/a:microsoft:exchange_server:2016:cu9

© SecPod Technologies