VYPR
High severity8.0CISA KEVNVD Advisory· Published Oct 3, 2022· Updated Jun 17, 2026

CVE-2022-41082

CVE-2022-41082

Description

Microsoft Exchange Server Remote Code Execution Vulnerability

Affected products

11
  • cpe:2.3:a:microsoft:exchange_server:2013:cumulative_update_23:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:microsoft:exchange_server:2013:cumulative_update_23:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_22:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_23:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:exchange_server:2019:cumulative_update_11:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:exchange_server:2019:cumulative_update_12:*:*:*:*:*:*
    • (no CPE)
  • Microsoft/Microsoft Exchange Server 2013 Cumulative Update 23v5
    Range: 15.00.0
  • Microsoft/Microsoft Exchange Server 2016 Cumulative Update 22v5
    Range: 15.0.0
  • Microsoft/Microsoft Exchange Server 2016 Cumulative Update 23v5
    Range: 15.01.0
  • Microsoft/Microsoft Exchange Server 2019 Cumulative Update 11v5
    Range: 15.02.0
  • Microsoft/Microsoft Exchange Server 2019 Cumulative Update 12v5
    Range: 15.02.0

Patches

Vulnerability mechanics

References

8

News mentions

2