<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2527 " id="quads-ad2527" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>
<h2></h2>
<h2><a href="https://www.moh10ly.com/wp-content/uploads/2020/02/image.png"><img width="1028" height="462" title="image" style="display: inline; background-image: none;" alt="image" src="https://www.moh10ly.com/wp-content/uploads/2020/02/image_thumb.png" border="0"></a> 

<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2530 " id="quads-ad2530" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>
 
</h2>
<h2>CVE-2020-0688 | Microsoft Exchange Validation Key Remote Code Execution Vulnerability</h2>
<h2>Security Vulnerability</h2>
<p>Date of Publishing: February/11/2020</p>
<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2525 " id="quads-ad2525" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>

<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2529 " id="quads-ad2529" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>

<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2531 " id="quads-ad2531" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>

<p>Microsoft has announced a vulnerability has been found in all Exchange Server 2010 through 2019 versions, The vulnerability allows an attack to send a specially crafted request to the affected server in order to exploit it.</p>
<h2>When could this happen?</h2>
<p>A remote code execution vulnerability exists in Microsoft Exchange Server when the server fails to properly create unique keys at install time.</p>
<p>Knowledge of a the validation key allows an authenticated user with a mailbox to pass arbitrary objects to be deserialized by the web application, which runs as SYSTEM.</p>
<p>The security update addresses the vulnerability by correcting how Microsoft Exchange creates the keys during install.</p>
<h2>Affected Versions:</h2>
<ul>
<li>
<h6>Microsoft Exchange Server 2010 Service Pack 3 Update Rollup 30</h6>
</li>
<li>
<h6>Microsoft Exchange Server 2013 Cumulative Update 23 ; ; ; </h6>
</li>
<li>
<h6>Microsoft Exchange Server 2016 Cumulative Update 14 ; ; ; </h6>
</li>
<li>
<h6>Microsoft Exchange Server 2016 Cumulative Update 15 ; ; ; </h6>
</li>
<li>
<h6>Microsoft Exchange Server 2019 Cumulative Update 3 ; ; ; </h6>
</li>
<li>
<h6>Microsoft Exchange Server 2019 Cumulative Update 4</h6>
</li>
</ul>
<p></p>
<p><a href="https://www.moh10ly.com/wp-content/uploads/2020/02/image-1.png"><img width="386" height="254" title="image" style="margin: 0px; display: inline; background-image: none;" alt="image" src="https://www.moh10ly.com/wp-content/uploads/2020/02/image_thumb-1.png" border="0"></a></p>
<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2522 " id="quads-ad2522" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>

<h2>Solution:</h2>
<p>Until now Microsoft has not provided any solution or work around to cover this vulnerability. </p>
<h4>Mitigations</h4>
<p>Microsoft has not identified any <a href="https://technet.microsoft.com/library/security/dn848375.aspx#Mitigation">mitigating factors</a> for this vulnerability.</p>
<h4>Workarounds</h4>
<p>Microsoft has not identified any <a href="https://technet.microsoft.com/library/security/dn848375.aspx#Workaround">workarounds</a> for this vulnerability.</p>
<h2>NOTE:</h2>
<p>Keep an eye on the below link for any change</p>
<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2526 " id="quads-ad2526" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>

<p><a href="https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0688">https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0688</a></p>

<!-- WP QUADS Content Ad Plugin v. 2.0.92 -->
<div class="quads-location quads-ad2524 " id="quads-ad2524" style="float:none;margin:0px 3px 3px 3px;padding:0px 0px 0px 0px;" data-lazydelay="0">

</div>


Reset and manage your Active Directory users' Passwords Active Directory is one of the most…
Finding Exchange Database hidden mailboxes. Story:Maybe you have been in this situation before, trying to…
If you're using a Proxy server in your firewall or in your network and have…
Story:I got some clients that have reported some of their users being locked out and…
Delegate Permissions This is a code that I have wrote recently to check if an…
Story: I got a request from a client who constantly gets CVs and have to…