CVE-2022-41080CISA KEV
Microsoft Exchange Server Privilege Escalation Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Exchange Server contains an unspecified vulnerability that allows for privilege escalation. This vulnerability is chainable with CVE-2022-41082, which allows for remote code execution.
- Product
- Exchange Server
- Added to KEV
- 10 Jan 2023
- Federal remediation due
- 31 Jan 2023
- Known ransomware use
- Yes