Story thread · 4 reports / 4 sources

Nearly 22,000 Microsoft Exchange servers remain exposed to critical security flaw (CVE-2026-62911)

helpnetsecurity.com · 12d

Nearly 22,000 Microsoft Exchange servers remain unpatched against CVE-2026-62911, a critical authentication bypass vulnerability, according to daily scans from the Shadowserver Foundation. The United States and Germany top the list with 6,200 and 5,100 unpatched servers. CVE-2026-62911 is a critical severity vulnerability, and Microsoft describes it as “authentication bypass by capture-replay in Microsoft Exchange Server,” which allows an authorized attacker to elevate privileges over a network. Microsoft released the fix on August 11, 2026, and … More → The post Nearly 22,000 Microsoft Exchange servers remain exposed to critical security flaw (CVE-2026-62911) appeared first on Help Net Security .

First report: 85 percent of on-prem servers in Germany vulnerable heise.de, 15d

The coverage

  1. 21,000 Exchange Servers Exposed to Public PoC Exploit After Pwn2Own $200K Chain Demo

    forkast.news · 13d

  2. Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

    bleepingcomputer.com · 13d

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.