Headline
CVE-2022-23277
Microsoft Exchange Server Remote Code Execution Vulnerability.
Related news
Microsoft Exchange Server ChainedSerializationBinder Remote Code Execution
This Metasploit module exploits vulnerabilities within the ChainedSerializationBinder as used in Exchange Server 2019 CU10, Exchange Server 2019 CU11, Exchange Server 2016 CU21, and Exchange Server 2016 CU22 all prior to Mar22SU. Note that authentication is required to exploit these vulnerabilities.