OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-96940

HIGH · CVSS 8.8 EPSS 0.50%

Source: NVD + CISA KEV + EPSS · Published 2026-10-02 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Microsoft Exchange Server is vulnerable due to weak authorization mechanisms that enable authenticated attackers to escalate their privileges remotely. This flaw poses a significant risk as it could allow malicious actors to gain unauthorized access to sensitive data and perform actions with elevated permissions. Organizations using Microsoft Exchange should prioritize this vulnerability to mitigate potential exploitation and protect their network integrity.

CVE
CVE-2026-96940
Severity
HIGH
CVSS
8.8
EPSS
0.50%
Microsoft Exchange

Original NVD Description

Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network.