Microsoft discloses Exchange zero-day with no patch yet available

Microsoft has disclosed a zero-day vulnerability that affects Exchange Server 2016, 2019, and Subscription Edition. This vulnerability would give bad actors an opportunity to run arbitrary code remotely on the Exchange server.  Although Microsoft has not issued any patches for this security vulnerability, they suggested two possible mitigations until a solution becomes available.   According to Microsoft, one preferred mitigation strategy is […]

This article has been indexed from Information Security Buzz

Read the original article: