Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-41040

Microsoft Exchange Server Elevation of Privilege Vulnerability
Exploit prediction scoring system (EPSS) score
EPSS Score 0.942
EPSS Ranking 99.9%
CVSS Severity
CVSS v3 Score 8.8
Proposed Action
Microsoft Exchange Server allows for server-side request forgery. Dubbed "ProxyNotShell," this vulnerability is chainable with CVE-2022-41082 which allows for remote code execution.
Ransomware Campaign
Known
Products affected by CVE-2022-41040


Contact Us

Shodan ® - All rights reserved