CVE-2020-0688
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka 'Microsoft Exchange Memory Corruption Vulnerability'.
- Published Feb 11, 2020
- CVSS 8.8 high
- 100.0% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
- A Metasploit module exploits it
- A fix is available
Affected software
In the news
- Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers The Hacker News ·
- NightEagle targets Russian companies Securelist ·