New security updates for Exchange Server (June 2023)

Microsoft has released new security updates for Exchange Server 2016 and 2019. The update fixes two remote code execution vulnerabilities with a severity rating of "Important". Click here to download the updates: The vulnerabilities are not yet being actively exploited. However, the available updates should be installed as soon as possible. Click here for the article on the ... Read more

New security updates for Exchange Server (March 2023)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019. This is likely to be the last security update for Exchange 2013, as support for Exchange 2013 ends on 11.04.2023. The March update for Exchange also fixes the problem with the crashing EWS Web Application Pool in IIS. Applications that use EWS should therefore ... Read more

New security updates for Exchange Server (February 2023)

Microsoft has released new security updates for Exchange 2013, 2016 and 2019. A total of 4 vulnerabilities classified as important have been fixed. Details on the closed vulnerabilities can be found here: As you can see, all 4 vulnerabilities are Remote Code Execution vulnerabilities, so the updates should be installed as soon as possible. Here it goes ... Read more

New security updates for Exchange Server (January 2023)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019 today. The security updates also include a new security feature, which currently still needs to be activated manually: Click here to download the security updates: The security updates fix the following security vulnerabilities classified as important: New security feature: Certificate Signing of PowerShell Serialization Payload To prevent ... Read more

New security updates for Exchange Server (November 2022)

On Tuesday, Microsoft released new security updates for Exchange Server 2013, 2016 and 2019. The update closes the ProxyNotShell vulnerability (CVE-2022-41040 and CVE-2022-41082), which was known and actively exploited in September. Click here to download the security updates: Microsoft recommends installing the update as soon as possible. Click here for the article on the Exchange ... Read more

Exchange Server: New security updates (October 2022)

Microsoft has released new security updates for all supported Exchange Server versions today. Microsoft explicitly points out that the updates do not contain a fix for the zero-day vulnerabilities (ProxyNotShell). The following vulnerabilities are fixed by the security update, three of the vulnerabilities are considered critical: CVE-2022-21979 CVE-2022-21980 CVE-2022-24477 CVE-2022-24516 CVE-2022-30134 The updates can be downloaded here: Exchange Server ... Read more

New security updates for Exchange Server (August 2022)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019 today. The update closes a total of 6 vulnerabilities for Exchange 2019, 3 of the vulnerabilities are considered critical. Click here to download the updates: Exchange Server 2013 CU23 Exchange Server 2016 CU22 and CU23 Exchange Server 2019 CU11 and CU12 These vulnerabilities are closed: Microsoft Exchange Information Disclosure Vulnerability ... Read more

New security updates for Exchange Server (May 2022)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019. Click here to go directly to the downloads: Exchange Server 2013 CU23 Exchange Server 2016 CU22 and CU23 Exchange Server 2019 CU11 and CU12 The update fixes a vulnerability (CVE-2022-21978) which is classified as "Important". The update should therefore be installed promptly. Details about the vulnerability can be found here: CVE-2022-21978 The ... Read more

Exchange Server: New security updates (March 2022)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019. The updates can be downloaded here: Exchange Server 2013 CU23 Exchange Server 2016 CU21 and CU22 Exchange Server 2019 CU10 and CU11 The updates close the vulnerability CVE-2022-23277, which is classified as Critical, and the vulnerability CVE-2022-24463, which is classified as Important. As Exchange Server currently likes to ... Read more

New security updates for Exchange Server (January 2022)

Microsoft has released new security updates for Exchange Server 2013, 2016 and 2019. The security update is intended to fix the following three vulnerabilities CVE-2022-21969 (Important) CVE-2022-21855 (Important) CVE-2022-21846 (Critical) The three vulnerabilities mentioned are errors that allow remote code execution. The updates should therefore be installed as soon as possible, even if no exploitation is currently ... Read more