CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Microsoft, Exchange.
CVE
CVE-2025-58107
Severity
HIGH
CVSS
7.5
EPSS
0.25%
Microsoft Exchange
Original NVD Description
In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.