PT-2022-4888 · Microsoft · Exchange Server

·

CVE-2022-41082

·

Published

2022-09-29

·

Updated

2026-09-01

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Exchange Server (affected versions not specified)
Description A vulnerability in Microsoft Exchange Server is related to errors in code generation management. Exploitation of this issue may allow a remote attacker to execute arbitrary code. The vulnerability affects the system and allows remote attackers to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

RCE

Deserialization of Untrusted Data

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-06033
CVE-2022-41082
ZDI-22-1624
ZDI-22-1625
ZDI-22-1626
ZDI-22-1627
ZDI-22-1628
ZDI-22-1629
ZDI-22-1630
ZDI-22-1631
ZDI-22-1632
ZDI-22-1633
ZDI-22-1634
ZDI-22-1635
ZDI-22-1636
ZDI-22-1637
ZDI-22-1638
ZDI-22-1639
ZDI-22-1640
ZDI-22-1641
ZDI-22-1642
ZDI-22-1643
ZDI-22-1644
ZDI-22-1645
ZDI-22-1646
ZDI-22-1647
ZDI-22-1648
ZDI-22-1649
ZDI-22-1650
ZDI-22-1651
ZDI-22-1652
ZDI-22-1653
ZDI-22-1654

Affected Products

Exchange Server