Skip to content

CVE-2020-17132

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
June 17, 2026
Last Seen
June 17, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Microsoft has patched a high-severity zero-day vulnerability in Exchange Server, tracked as CVE-2026-42897, which allows attackers to execute arbitrary JavaScript via crafted emails in Outlook Web Access. The flaw affects Exchange Server 2016, 2019, and Subscription Edition, enabling remote exploita...

A series of remote code execution (RCE) vulnerabilities have been identified in various systems, notably Microsoft Exchange and Fortra's GoAnywhere MFT. CVE-2020-16875 and CVE-2020-17132 affect Microsoft Exchange, allowing attackers to execute arbitrary code with authenticated user access. CVE-2020-...

Public Exploits

Checking GitHub for proof-of-concept code…