RULE(RULE ID:338369)

Rule General Information
Release Date: 2024-08-28
Rule Name: Microsoft Exchange Server Arbitrary File Write Vulnerability (CVE-2021-26858)
Severity:
CVE ID:
Rule Protection Details
Description: Microsoft Exchange Server Remote Code Execution Vulnerability
Impact: An attacker can write arbitrary files by constructing a specially crafted request, thus realizing unauthorized arbitrary file upload, which can eventually cause remote code execution.
Affected OS: Windows, Linux, Others
Reference: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26858
Solutions
Refer to the announcement or patch by the vendor: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26858