CVE-2017-0110
CVE-2017-0110
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 7.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Mar 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Cross-site scripting (XSS) vulnerability in Microsoft Exchange Outlook Web Access (OWA) allows remote attackers to inject arbitrary web script or HTML via a crafted email or chat client, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability."
Affected products
Microsoft Corporation · Exchange ServerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →