Description
Improper input validation in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Problem types
CWE-20: Improper Input Validation
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59248 (Microsoft Exchange Server Spoofing Vulnerability)