Cloud Defense Logo

Products

Solutions

Company

Book A Live Demo

CVE-2020-17085 : What You Need to Know

Learn about CVE-2020-17085, a Denial of Service vulnerability in Microsoft Exchange Server affecting various versions. Find mitigation steps and preventive measures here.

Microsoft Exchange Server Denial of Service Vulnerability was published on November 11, 2020, affecting various versions of Microsoft Exchange Server.

Understanding CVE-2020-17085

This CVE identifies a Denial of Service vulnerability in Microsoft Exchange Server.

What is CVE-2020-17085?

The CVE-2020-17085 is a Denial of Service vulnerability in Microsoft Exchange Server, impacting multiple versions.

The Impact of CVE-2020-17085

This vulnerability allows attackers to launch Denial of Service attacks, potentially disrupting Exchange Server operations.

Technical Details of CVE-2020-17085

This section provides technical details of the CVE.

Vulnerability Description

The vulnerability in Microsoft Exchange Server leads to a Denial of Service condition, affecting the server's availability.

Affected Systems and Versions

        Microsoft Exchange Server 2019 Cumulative Update 6 (Version 15.02.0)
        Microsoft Exchange Server 2016 Cumulative Update 17 (Version 15.01.0)
        Microsoft Exchange Server 2019 Cumulative Update 7 (Version 15.02.0)
        Microsoft Exchange Server 2016 Cumulative Update 18 (Version 15.01.0)
        Microsoft Exchange Server 2013 Cumulative Update 23 (Version 15.00.0)
        Platforms: x64-based Systems

Exploitation Mechanism

The vulnerability can be exploited by sending specially crafted requests to the affected Exchange Server, leading to a DoS condition.

Mitigation and Prevention

Protect your systems from CVE-2020-17085 with these steps.

Immediate Steps to Take

        Apply security updates provided by Microsoft for the affected Exchange Server versions.
        Monitor network traffic for any suspicious activity targeting Exchange servers.
        Implement network segmentation to limit the impact of potential attacks.

Long-Term Security Practices

        Regularly update and patch Microsoft Exchange Server to address known vulnerabilities.
        Conduct security assessments and penetration testing to identify and mitigate potential risks.

Patching and Updates

Ensure timely installation of security patches and updates released by Microsoft to safeguard Exchange Server from known vulnerabilities.

Popular CVEs

CVE Id

Published Date

Is your System Free of Underlying Vulnerabilities?
Find Out Now