Microsoft
Microsoft Exchange Online: vulnerabilidades y CVE
Microsoft Exchange Online tiene 5 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses5
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-65801 | Crítica (10) | 0.90% | — | 20 ago 2026 | Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2026-56191 | Crítica (10) | 0.90% | — | 24 jul 2026 | Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network. |
| CVE-2026-54998 | Alta (8.8) | 0.78% | — | 2 jul 2026 | Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network. |
| CVE-2026-48582 | Crítica (9.6) | 0.69% | — | 19 jun 2026 | Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network. |
| CVE-2026-48579 | Alta (7.5) | 1.00% | — | 4 jun 2026 | Improper authorization in Microsoft Exchange Online allows an unauthorized attacker to disclose information over a network. |