SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-69641

CRITICAL · CVSS 9.1 EPSS 0.85%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Microsoft Exchange Server is vulnerable due to a missing authorization flaw that enables an authenticated attacker to escalate their privileges remotely. This critical vulnerability poses a significant risk, as it could allow attackers to gain unauthorized access to sensitive data and perform actions with elevated permissions. Organizations using Microsoft Exchange should prioritize patching this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-69641
Severity
CRITICAL
CVSS
9.1
EPSS
0.85%
Microsoft Exchange

Original NVD Description

Missing authorization in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.