Microsoft Exchange Server Insecure Deserialization (CVE-2023-36035)

Related Vulnerabilities: CVE-2023-36035  

Check Point Reference: CPAI-2023-1519 Date Published: 12 Feb 2024 Severity: High Last Updated: Monday 12 February, 2024 Source: Industry Reference:CVE-2023-36035
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Microsoft Exchange Server 2016 Cumulative Update 23
Microsoft Exchange Server 2019 Cumulative Update 12
Microsoft Exchange Server 2019 Cumulative Update 13 Vulnerability Description An insecure deserialization vulnerability exists in Microsoft Exchange Server. Successful exploitation of this vulnerability could result in information disclosure and spoofing.