CVE-2018-8581 is an elevation of privilege vulnerability affecting Microsoft Exchange Server. It carries a high CVSS score of 7.4, indicating a network-based attack with high impact on confidentiality and integrity, but requiring high attack complexity. This vulnerability is actively exploited, as evidenced by its inclusion in the CISA KEV catalog and use in known ransomware campaigns. While no public exploit code is listed, it has garnered significant community attention and media coverage, including discussions about NTLM authentication to domain admin privilege escalation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2010CPE matchmatch criteria | cpe:2.3:a:microsoft:exchange_server:2010:-:*:*:*:*:*:* | ||
2013CPE matchmatch criteria | cpe:2.3:a:microsoft:exchange_server:2013:-:*:*:*:*:*:* | ||
2016CPE matchmatch criteria | cpe:2.3:a:microsoft:exchange_server:2016:-:*:*:*:*:*:* | ||
2019CPE matchmatch criteria | cpe:2.3:a:microsoft:exchange_server:2019:-:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.