← Back to browse · API

CVE-2021-26857

Severity
HIGH
CVSS
7.8
EPSS
0.94008
Risk score
57.9
CISA KEV
Yes
PoC
No
Published
2021-03-02
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2021-13641, GHSA-2QWQ-GQPM-Q83G
Products
Microsoft:Exchange Server, Microsoft:Microsoft Exchange Server 2010 Service Pack 3 14.0.0.0 <publication, Microsoft:Microsoft Exchange Server 2013 Cumulative Update 21 15.00.0 <publication, Microsoft:Microsoft Exchange Server 2013 Cumulative Update 22 15.00.0 <publication, Microsoft:Microsoft Exchange Server 2013 Cumulative Update 23 15.00.0 <publication, Microsoft:Microsoft Exchange Server 2013 Service Pack 1 15.00.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 10 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 11 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 12 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 13 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 14 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 15 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 16 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 17 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 18 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 19 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 8 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2016 Cumulative Update 9 15.01.0 <publication, Microsoft:Microsoft Exchange Server 2019 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 1 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 2 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 3 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 4 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 5 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 6 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 7 15.02.0 <publication, Microsoft:Microsoft Exchange Server 2019 Cumulative Update 8 15.02.0 <publication
Sources
cisa.gov CVE-2021-26857
euvd EUVD-2021-13641

Description

Microsoft Exchange Server Remote Code Execution Vulnerability

References