Page 1 of 1

Over 60,000 Exchange servers vulnerable to ProxyNotShell attacks

Posted: Sat Nov 09, 2024 6:24 am
by Shane1145
More than 60,000 Microsoft Exchange servers exposed online are yet to be patched against the CVE-2022-41082 remote code execution (RCE) vulnerability, one of the two security flaws targeted by ProxyNotShell exploits.

According to a recent tweet from security researchers at the Shadowserver Foundation, a nonprofit organization dedicated to improving internet security, almost 70,000 Microsoft Exchange servers were found to be vulnerable to ProxyNotShell attacks according to version information (the servers' x_owa_version header).


https://www.bleepingcomputer.com/news/s ... l-attacks/