CVE-2022-41082

CVSS 3.1 Score 8 of 10 (high)

Details

Published Oct 3, 2022
Updated: Jan 2, 2025
CWE ID 502

Summary

CVE-2022-41082 is a remote code execution vulnerability affecting Microsoft Exchange Servers. An attacker can exploit this flaw by sending a specially crafted email to a target user. Once the email is opened, the malicious code is executed on the server, allowing the attacker to gain unauthorized access and potentially install malware. This vulnerability poses a significant risk to organizations using unpatched Exchange Servers and could lead to data theft or system compromise. It is strongly recommended that affected organizations apply the available patch as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Exchange Server

Affected Vendors

  • Microsoft