CVE-2020-1714410.12.2020, 00:15Microsoft Exchange Remote Code Execution VulnerabilityEnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST8.4 HIGHNETWORKLOWHIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:HmicrosoftCNA8.4 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H/E:P/RL:O/RC:CCVEADP------CISA-ADPADP------Awaiting analysisThis vulnerability is currently awaiting analysis.Base ScoreCVSS 3.xEPSS ScorePercentile: 99%Common Weakness EnumerationCWE-502 - Deserialization of Untrusted DataThe application deserializes untrusted data without sufficiently verifying that the resulting data will be valid.Referenceshttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17144https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17144