CNNVD-202510-1804 Information

CNNVD ID

CNNVD-202510-1804

CVE-2025-59248

  • CNNVD Published: 2025-10-14

Description (Chinese)

Microsoft Exchange Server是美国微软(Microsoft)公司的一套电子邮件服务程序。它提供邮件存取、储存、转发,语音邮件,邮件过滤筛选等功能。 Microsoft Exchange Server存在输入验证错误漏洞,该漏洞源于攻击者利用该漏洞执行欺骗攻击。

Description (English)

Microsoft Exchange Server is an e-mail service for Microsoft (MSC) in the United States. It provides e-mail access, storage, forwarding, voice mail and mail filtering. Microsoft Exchange Server had an input-verification error loophole, which arose from the use of that loophole by the attackers to carry out fraudulent attacks.

Hazard Level

Medium

Vulnerability Type

输入验证错误

Affected Vendor

微软

Published

2025-10-14

Last Modified

2026-02-24

References

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59248 https://vigilance.fr/vulnerability/Microsoft-Exchange-Server-vulnerabilities-of-October-2025-48471

Patch

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59248

Share on: