You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2021-26855
About this tag
CVE-2021-26855 is a critical vulnerability in Microsoft Exchange Server that allows an unauthenticated attacker to execute arbitrary code on vulnerable systems. Exploitation can lead to persistent access, file and mailbox compromise, and credential theft. This tag covers discussions about mitigation steps, patching guidance, and security advisories related to this Exchange Server flaw, including CISA alerts and Microsoft's out-of-band updates.
Original release date: March 3, 2021
Summary
Cybersecurity and Infrastructure Security (CISA) partners have observed active exploitation of vulnerabilities in Microsoft Exchange Server products. Successful exploitation of these vulnerabilities allows an unauthenticated attacker to execute...