AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-1084

MEDIUM · CVSS 6.5 EPSS 5.33% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-07-15 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2019-1084
Severity
MEDIUM
CVSS
6.5
EPSS
5.33%
Microsoft Exchange

Original NVD Description

An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to conversations, remain invisible. This security update addresses the issue by validating display names upon creation in Microsoft Exchange, and by rendering invalid display names correctly in Microsoft Outlook clients., aka 'Microsoft Exchange Information Disclosure Vulnerability'.