An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8448 | Patch Vendor Advisory |
http://www.securitytracker.com/id/1041836 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/105492 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-10-10 06:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-8448
Mitre link : CVE-2018-8448
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
microsoft
- exchange_server