CVE-2023-21529

⚠ KEVEPSS 27.6%

Microsoft Exchange Server Deserialization of Untrusted Data Vulnerability

Added to CISA KEV: 4/13/2026

Description

Microsoft Exchange Server contains a deserialization of untrusted data that allows an authenticated attacker to achieve remote code execution.

Affected packages (0)

No package mapping in OSV.