• XSS.stack #1 – первый литературный журнал от юзеров форума

PrivEsc how to exploit Microsoft Exchange Server which is outdated?

sonjoybabu45

HDD-drive
Пользователь
Регистрация
05.11.2020
Сообщения
28
Реакции
0
i did found some outdated microsoft exchange server information includes their domain name. but i cant exploit the server can you guys help me how can i exploit. i will put some info below.

The following Exchange Server is publicly accessible and looks out-dated :

It is critical to update to a safe version as soon as possible since multiple CVEs allow remote attackers to DoS or achieve RCE (Remote code execution) on the server. Those vulnerabilities are currently used in ransomware campaign and could damage your network.

They show me the internet network ip but for some reason i.m not gonna post the ip and vulnerable sites names.

IP: 0.0.0.100
Port: 443
URL: https://0.0.0.100

1669667902640.png


Found Exchange server:
Build: 15.1.2375.7
Version: 2016CU22
Build date: 9/2021
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080
Affected by CVE-2022-21979
Affected by CVE-2022-21980
Affected by CVE-2022-24477
Affected by CVE-2022-24516
Affected by CVE-2022-30134
Affected by CVE-2022-34692
Affected by ZDI-CAN-18333
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-21846
Affected by CVE-2022-21855
Affected by CVE-2022-21969
Affected by CVE-2022-23277
Affected by CVE-2022-24463
Affected by CVE-2021-42321
Affected by CVE-2021-26427
Affected by CVE-2021-41348

now how can i exploit the desire server? i have this Microsoft Exchange Server outdated version to many popular and non popular domains. so i want to exploit it.

thanks in advanced
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх