Home
HIGH: 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 15.02.0.0 (custom) before 15.02.1748.039
affected
15.02.0.0 (custom) before 15.02.1544.036
affected
15.02.0.0 (custom) before 15.02.2562.029
affected
15.01.0.0 (custom) before 15.01.2507.061
affected
Description
Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally.
Problem types
CWE-303: Incorrect Implementation of Authentication Algorithm
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53782 (Microsoft Exchange Server Elevation of Privilege Vulnerability)