Established 2026Monday, 20 July 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageVulnerabilities Desk
Vulnerabilities

On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted Email

On-premise Exchange Server spoofing vulnerability enables attacks via crafted emails, adding to Microsoft's growing legacy infrastructure burden.

Summary written by editorial AI · Source link below

Filed by THN (Feedburner)1 min readCVE-2026-42897Read at source ↗
CVSS8.1highCVE-2026-42897

Microsoft has disclosed a new security vulnerability impacting on-premise versions of Exchange Server that it said has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-42897 (CVSS score: 8.1), has been described as a spoofing bug stemming from a cross-site scripting flaw. An anonymous researcher has been credited with discovering and reporting the issue. "

Continue at the source
Read the full report at THN (Feedburner)

External link — opens at THN (Feedburner) in a new tab.

§
Continue with

More from the Vulnerabilities Desk