CVE-2018-8581
גבוהה 7.4 מנוצלת בשטח (KEV) בשימוש בכופרה
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Microsoft Exchange Server Privilege Escalation Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.
מדדים
- CVSS 3.1
-
7.4 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N - EPSS — סבירות ניצול
- 27% (אחוזון 100) נכון ל-25/7/2026
מוצרים מושפעים
microsoft: exchange server
קישורים
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8581 PatchVendor Advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8581 PatchVendor Advisory
- http://www.securityfocus.com/bid/105837 Broken LinkThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1042141 Broken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/105837 Broken LinkThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1042141 Broken LinkThird Party AdvisoryVDB Entry
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-201… US Government Resource