Microsoft Exchange Server
ADV180010 — June 2018 Oracle Outside In Library Security Update
Unknown
2018-06 archive
Executive Summary
Microsoft Exchange Server contains some elements of the Oracle Outside In libraries. The June 19, 2018 releases of Microsoft Exchange Server contain fixes to the following vulnerabilities, which are described in: The following software releases include updates to address the identified vulnerabilities. Product versions or releases that are not listed are past their support life cycle or must be updated to the appropriate June 19, 2018 release of Microsoft Exchange Server to receive the fixes for these vulnerabilities.
Overview
Unknown
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
EPSS Score
No EPSS score available for this CVE.
View on FIRST.orgAffected Products
3 affected products
| Product | KB Article | Severity | Impact | Restart Required |
|---|---|---|---|---|
| Microsoft Exchange Server 2010 Service Pack 3 | 4295699 (Update) |
Unknown | Unknown | Maybe |
| Microsoft Exchange Server 2013 | 4099855 (Update) |
Unknown | Unknown | Maybe |
| Microsoft Exchange Server 2016 | 4099852 (Update) |
Unknown | Unknown | Maybe |
Patches
3 patches
| Article | Type | Restart |
|---|---|---|
4295699 |
Update | Maybe |
4099855 |
Update | Maybe |
4099852 |
Update | Maybe |
Exploits & PoC
No public exploit or PoC has been linked for this CVE yet. When available, references are sourced from public repositories and may be unverified or non-functional — review carefully before use.
Detection Rules
No public Sigma or Nuclei detection rule has been mapped to this CVE yet. Coverage is concentrated on exploited / high-profile vulnerabilities; check SigmaHQ for updates.
Acknowledgments
Mateusz Krzwicki of MSRC Vulnerabilities & Mitigations
References
On This Page