HIGH

CVE-2021-42321

Microsoft Exchange Server 2021-11-10 CVSS v3.1
CVSS
8.8
KEV

Description

Microsoft Exchange Server Remote Code Execution Vulnerability

Summary dbcve.org

Microsoft Exchange Server contains a remote code execution vulnerability that allows an attacker to execute arbitrary code on the target server. The high CVSS score of 8.8 indicates network-based exploitation with relatively low complexity.

Mitigation

Apply Microsoft security updates for CVE-2021-42321 to Exchange Server immediately. If patching is not immediately possible, implement network-level restrictions to limit exposure to untrusted networks.

Proof of Concept
Patch Commit

EPSS Score

91.74%
Probability of exploitation in next 30 days
99.8th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE