Skip to content
TheCyberThrone

Thinking Security ! Always

  • Latest Story
  • AI
  • Application Security
  • Cloud Security
    • AWS Security
    • Azure Security
    • Google Security
  • Container Security
  • Data Breaches
  • Email Security
  • Mobile Security
  • Security Acquisition
  • ZeroDay
  • Certification Guide
    • Cloud Certifications
    • Network Certifications
    • Security Certifications
  • Security NewsLetter
  • About Author
  • facebook.com
  • twitter.com
  • t.me
  • instagram.com
  • youtube.com
Subscribe

Exchange Server

  • Home
  • Exchange Server
CVE-2026-42897 — Microsoft Exchange Server OWA XSS Vulnerability

CVE-2026-42897 — Microsoft Exchange Server OWA XSS Vulnerability

Overview Microsoft has confirmed active exploitation of CVE-2026-42897, a Cross-Site Scripting vulnerability in Microsoft Exchange Server carrying a CVSS score of 8.1.The flaw stems from improper neutralization of input during…
Posted by PravinKarthik May 15, 2026
Microsoft Exchange Server Vulnerability Actively Exploited – CVE-2024-21410

Microsoft Exchange Server Vulnerability Actively Exploited – CVE-2024-21410

Microsoft has raised the alarm on a critical security vulnerability within the Exchange Server  that is tracked as CVE-2024-21410, CVSS 9.8 that has already been exploited in the wild before this…
Posted by PravinKarthik February 16, 2024
Microsoft Adviced to Patch On-Prem Exchange Servers

Microsoft Adviced to Patch On-Prem Exchange Servers

Microsoft has urged administrators of on-premises exchange servers to keep them patched and updated, warning that attackers are not going to go away. Microsoft advised that customers install the latest…
Posted by PravinKarthik January 28, 2023
Play Ransomware Exploits Exchange Server Flaw

Play Ransomware Exploits Exchange Server Flaw

Play ransomware group is using a new exploit in Microsoft Exchange to breach servers. The exploit chain bypasses ProxyNotShell URL rewrite mitigations to gain RCE on vulnerable servers. Threat actors…
Posted by PravinKarthik December 21, 2022
Microsoft Mitigation for Exchange Server ZeroDay can be bypassed

Microsoft Mitigation for Exchange Server ZeroDay can be bypassed

Researchers warn on the mitigation proposed by Microsoft for the new Exchange Server zero-day vulnerabilities named ProxyNotShell can be easily bypassed. Researcher Kevin Beaumont named the vulnerabilities ProxyNotShell due to similarities to…
Posted by PravinKarthik October 5, 2022
Session Manager Backdooring Microsoft Exchange server

Session Manager Backdooring Microsoft Exchange server

Attackers using a new SessionManager backdoor, which can be used to gain persistent, undetected access to emails and even take over the target organization's infrastructure. Researchers reported the emergence of…
Posted by PravinKarthik July 1, 2022
Trending post
  • OpenHack: AI Just Became Every Hacker's Co-Pilot
    OpenHack: AI Just Became Every Hacker's Co-Pilot
  • CISSP Executive Briefing: Resilience Debt
    CISSP Executive Briefing: Resilience Debt
  • CISSP Domain 8: Zero Hour Exam Cram Series
    CISSP Domain 8: Zero Hour Exam Cram Series
  • CISSP Zero Hour Framework™ Series
    CISSP Zero Hour Framework™ Series
  • CVE-2026-45659 — Microsoft SharePoint RCE
    CVE-2026-45659 — Microsoft SharePoint RCE
  • CISA adds Seven Vulnerabilities to KEV Catalog
    CISA adds Seven Vulnerabilities to KEV Catalog
Archives

Click to Subscribe

Follow Us

  • Facebook
  • Twitter
  • Instagram
Copyright 2026 — TheCyberThrone. All rights reserved. Bloghash WordPress Theme
Scroll to Top