CRITICAL
CVE-2021-34473
CVSS
9.1
KEV
Description
Microsoft Exchange Server Remote Code Execution Vulnerability
Weakness (CWE)
CWE-918
Server-Side Request Forgery (SSRF)
EPSS Score
100%
Probability of exploitation in next 30 days
100th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34473
Patch, Vendor Advisory
http://packetstormsecurity.com/files/163895/Microsoft-Exchange-ProxyShell-Remote-Code-Execution.html
Exploit, Third Party Advisory, VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-34473
Patch, Vendor Advisory
https://www.zerodayinitiative.com/advisories/ZDI-21-821/
Third Party Advisory, VDB Entry
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-34473
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.