Rewterz
Rewterz Threat Advisory – CVE-2022-41107 – Microsoft Office Graphics Vulnerability
November 10, 2022
Rewterz
Rewterz Threat Alert – IcedID banking Trojan – Active IOCs
November 10, 2022

Rewterz Threat Advisory – CVE-2022-41123 – Microsoft Exchange Server Vulnerability

Severity

High

Analysis Summary

CVE-2022-41123

Microsoft Exchange Server could allow a local authenticated attacker to gain elevated privileges on the system. By sending a specially-crafted request, an authenticated attacker could exploit this vulnerability to execute arbitrary code with higher privileges.

Impact

Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2022-41123

Affected Vendors

Microsoft

Affected Products

  • Microsoft Exchange Server 2013 CU23
  • Microsoft Exchange Server 2016 CU22
  • Microsoft Exchange Server 2019 CU 11
  • Microsoft Exchange Server 2016 CU23
  • Microsoft Exchange Server 2019 CU12

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security TechCenter