Microsoft Exchange Server Insecure Deserialization (CVE-2023-36050)

Related Vulnerabilities: CVE-2023-36050  

Check Point Reference: CPAI-2023-1515 Date Published: 11 Feb 2024 Severity: High Last Updated: Sunday 11 February, 2024 Source: Industry Reference:CVE-2023-36050
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Microsoft Exchange Server 2016 Cumulative Update 23
Microsoft Exchange Server 2019 Cumulative Update 12
Microsoft Exchange Server 2019 Cumulative Update 13 Vulnerability Description An insecure deserialization vulnerability exists in Microsoft Exchange Server. Successful exploitation of this vulnerability could result in information disclosure in the context of SYSTEM.