Microsoft Exchange ProxyNotShell...

- AV AC AU C I A
发布: 2022-11-30
修订: 2024-12-11

This Metasploit module chains two vulnerabilities on Microsoft Exchange Server that, when combined, allow an authenticated attacker to interact with the Exchange Powershell backend (CVE-2022-41040), where a deserialization flaw can be leveraged to obtain code execution (CVE-2022-41082). This exploit only supports Exchange Server 2019. These vulnerabilities were patched in November 2022.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息