AllCyberNews

CVE-2026-62911

Microsoft Exchange Server Elevation of Privilege Vulnerability

CVSS 8 high · Microsoft Microsoft Exchange Server 2016 Cumulative Update 23 · published 2026-08-11

Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

Coverage 1 source

  1. 2026-09-02 Help Net Security critical Nearly 22,000 Microsoft Exchange servers remain exposed to critical security flaw (CVE-2026-62911)

    22,000 Microsoft Exchange servers are unpatched against a critical authentication bypass vulnerability.

Also covered