OnPrem Microsoft Exchange Server CVE202642897 Exploited via Crafted Email
Microsoft has disclosed a new security vulnerability impacting onpremise versions of Exchange Server that it said has come under active exploitation in the wild The vulnerability tracked as CVE202642897 CVSS score 81 has been described as a spoofing bug stemming from a crosssite scripting flaw An anonymous researcher has been credited with discovering and reporting the issue