Description
Improper validation of syntactic correctness of input in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Problem types
CWE-1286: Improper Validation of Syntactic Correctness of Input
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-25007 (Microsoft Exchange Server Spoofing Vulnerability)