KNOWN EXPLOITED VULNERABILITY DOSSIER

CVE-2021-26855

Microsoft · Exchange Server

Server-side request forgery (SSRF) flaw in Exchange ('ProxyLogon') allowing unauthenticated attackers to bypass authentication and read mailbox contents.

CISA KEV Added: 2021-11-03
Severity Rating: Critical (CVSS 9.8)
Legal Indictments: 0 Cases
Catalog Status: Active KEV Mandate

Correlated Federal Court Cases & Indictments (0)

No specific federal indictment in our landmark database directly links to this CVE yet. This vulnerability is monitored under CISA's Known Exploited Vulnerabilities catalog.

Associated Government Advisories

← Back to All CVEs Explore ATT&CK Matrix →