SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-69380

HIGH · CVSS 8.1 EPSS 0.71%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Microsoft Exchange Server is vulnerable due to a missing authorization flaw that enables an authenticated attacker to elevate their privileges remotely. This high-severity vulnerability could lead to unauthorized access and control over sensitive data and functionalities within the Exchange environment. Organizations using Microsoft Exchange should prioritize this issue to mitigate potential exploitation risks.

CVE
CVE-2026-69380
Severity
HIGH
CVSS
8.1
EPSS
0.71%
Microsoft Exchange

Original NVD Description

Missing authorization in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.