(MS12-080) Vulnerabilities in Microsoft Exchange Server Could Allow Remote Code Execution (2784126)
Data de publicação: 12 dezembro 2012
Schweregrad: : Crítico
Identificador(es) CVE: : CVE-2012-4791
Data do informe: 12 dezembro 2012
Descrição
This patch addresses vulnerabilities in Microsoft Exchange Server, which could allow remote code execution on the transcoding service on the Exchange server via a specially crafted file using Outlook Web App (OWA).
Solução
Software infectado e versão:
- Microsoft Exchange Server 2007 Service Pack 3
- Microsoft Exchange Server 2010 Service Pack 1
- Microsoft Exchange Server 2010 Service Pack 2