High severity8.8CISA KEVNVD Advisory· Published Feb 14, 2023· Updated Apr 14, 2026
CVE-2023-21529
CVE-2023-21529
Description
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected products
4cpe:2.3:a:microsoft:exchange_server:2013:cumulative_update_23:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:microsoft:exchange_server:2013:cumulative_update_23:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_23:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2019:cumulative_update_11:*:*:*:*:*:*
- cpe:2.3:a:microsoft:exchange_server:2019:cumulative_update_12:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529nvdPatchVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
- www.microsoft.com/en-us/security/blog/2026/04/06/storm-1175-focuses-gaze-on-vulnerable-web-facing-assets-in-high-tempo-medusa-ransomware-operations/nvdTechnical Description
News mentions
0No linked articles in our index yet.