Critical Exchange Server zero-day under active exploitation

BleepingComputer reports that organizations have been advised by Microsoft regarding the active exploitation of a critical Exchange Server zero-day flaw, tracked as CVE-2024-21410, prior to it being remediated as part of this month’s Patch Tuesday. Attackers could leverage the bug to facilitate privilege escalation in NTLM relay attacks against Microsoft Exchange Servers, according to an updated Microsoft advisory regarding the vulnerability.

Source: SC Magazine

 


Date:

Categorie(s):