CVE-2022-41080β€”Microsoft Exchange Server Privilege Escalation Vulnerability

PUBLISHEDvulnerability record
2023-01-10 Β· last modified June 21, 2025

Metadata

CVE ID:
CVE-2022-41080
Project:
Microsoft
Product:
Exchange Server
Date Added:
2023-01-10
Due Date:
2023-01-31
Last Updated:
June 21, 2025

Vulnerability Name

Microsoft Exchange Server Privilege Escalation Vulnerability

Description

Microsoft Exchange Server contains an unspecified vulnerability that allows for privilege escalation. This vulnerability is chainable with CVE-2022-41082, which allows for remote code execution.

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
KNOWN

Action

Apply updates per vendor instructions.

Additional Notes