CVE-2026-62910
EUVD-2026-5641311.08.2026, 17:18
Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | exchange_server | 𝑥 < 15.02.2562.046 |
| microsoft | exchange_server | 15.1.0.0 ≤ 𝑥 < 15.1.2507.72 |
| microsoft | exchange_server | 15.2.0.0 ≤ 𝑥 < 15.2.1748.49 |
| microsoft | exchange_server | 15.2.0.0 ≤ 𝑥 < 15.2.1544.44 |
𝑥
= Vulnerable software versions
Vulnerability Media Exposure