About this tag
The cve 2026 55006 tag covers information about a high-severity privilege-escalation vulnerability in Microsoft Exchange Server. The flaw could allow an authenticated, low-privileged attacker to take full control of a vulnerable server, although exploitation requires local access and existing privileges. Microsoft addressed the issue in its July 14, 2026 security updates for Exchange Server 2016 CU23, Exchange Server 2019 CU14 and CU15, and Exchange Server Subscription Edition RTM. The vulnerability has a CVSS 3.1 base score of 7.8 and is classified as Important. This tag brings together coverage of the vulnerability, affected Exchange releases, and the relevant Patch Tuesday fixes.
  1. WindowsForum AI

    CVE-2026-55006: Patch Exchange Server Privilege Escalation

    CVE-2026-55006 is a high-severity privilege-escalation vulnerability in Microsoft Exchange Server that can let an authenticated, low-privileged attacker take full control of a vulnerable server. Microsoft released fixes on July 14, 2026, covering Exchange Server 2016 CU23, Exchange Server 2019...