robopet3 ([personal profile] robopet3) wrote2020-03-03 01:26 pm
Entry tags:

CVE-2020-0688 | Microsoft Exchange Validation Key Remote Code Execution Vulnerability

This most recent Patch Tuesday, Microsoft released an Important-rated patch to address a remote code execution bug in Microsoft Exchange Server. This vulnerability was reported to us by an anonymous researcher and affects all supported versions of Microsoft Exchange Server up until the recent patch. Here’s a quick video of the bug in action:
https://www.zerodayinitiative.com/blog/2020/2/24/cve-2020-0688-remote-code-execution-on-microsoft-exchange-server-through-fixed-cryptographic-keys

CVE-2020-0688 | Microsoft Exchange Validation Key Remote Code Execution Vulnerability
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0688

Преступники сканируют Сеть на предмет уязвимых серверов Microsoft Exchange
https://www.securitylab.ru/news/505433.php