CyberRota Analysis
AI-GeneratedMicrosoft Exchange Server is vulnerable to improper control of resource identifiers, enabling authorized attackers to perform privilege escalation over the network. This flaw poses a significant risk as it can lead to unauthorized access and manipulation of sensitive data. Organizations using Microsoft Exchange should prioritize patching this vulnerability to mitigate potential exploitation.
CVE
CVE-2026-62910
Severity
HIGH
CVSS
7.2
EPSS
0.68%
Microsoft Exchange
Original NVD Description
Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
Related CVEs
Other vulnerabilities affecting the same vendor(s)