Medium severity5.4NVD Advisory· Published Apr 9, 2019· Updated Jun 17, 2026
CVE-2019-0817
CVE-2019-0817
Description
A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web Access (OWA) fails to properly handle web requests, aka 'Microsoft Exchange Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0858.
Affected products
11cpe:2.3:a:microsoft:exchange_server:2010:sp3:*:*:*:*:*:*+ 10 more
- cpe:2.3:a:microsoft:exchange_server:2010:sp3:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2013:cumulative_update_22:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_11:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_12:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2019:-:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2019:cumulative_update_1:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 2010 Service Pack 3
- (no CPE)range: Cumulative Update 22
- (no CPE)range: Cumulative Update 11
- (no CPE)range: Cumulative Update 1
Patches
Vulnerability mechanics
References
1- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0817nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.