CVE-2021-26855

CVE Published 2021-03-03
Related CWE(s) CWE-918: Server-Side Request Forgery (SSRF)
Related Vendor(s) microsoft
Related Product(s) exchange_server
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 9.8 (CRITICAL)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

Microsoft Exchange Server Remote Code Execution Vulnerability

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Threat Reports Related to CVE-2021-26855

Report

HAFNIUM targeting Exchange Servers with 0-day exploits

In March 2021 Microsoft detected multiple zero-day exploits being used as part of a widespread campaign by HAFNIUM / Silk Typhoon. This report ...

Associated CAPEC Patterns

References