CVE-2018-8153: Microsoft Exchange Server
Medium severity, CVSS 5.4. EPSS: 3.5% chance of exploitation in the next 30 days.
A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft Exchange Spoofing Vulnerability." This affects Microsoft Exchange Server.
Affected products
- Microsoft Exchange Server: version 2016 only
Published 2018-05-09. Last modified 2026-06-17.