Microsoft Exchange CVE-2017-8559 Cross-Site Scripting Vulnerability
by CIRT Team
Description: An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests. An attacker who successfully exploited this vulnerability could perform script/content injection attacks and attempt to trick the user into disclosing sensitive information.
Impact: Attackers can exploit this issue to gain elevated privileges.
Mitigation: Updates are available. Please check specific vendor advisory for more information.
Reference URL’s:
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8559
- http://www.securityfocus.com/bid/99448/info
Recommended Posts
Active Exploitation of Critical F5 BIG – IP Vulnerability (CVE–2023-46747) Uncovered in Bangladesh
06 Nov 2024 - Security Advisories & Alerts