logo

Microsoft Exchange Vulnerabilities CVE-2020-16875 and CVE-2023-23397 Under Active Exploitation

ID: 97695c56-b0a5-5047-a88b-72c83f7f2511

STIX ID: report--97695c56-b0a5-5047-a88b-72c83f7f2511

Feed Name: ThreatCluster

Threat Score
85/100

Date Published: 2026-06-17

Date Updated: 2026-06-17

...
...

The report highlights two serious Microsoft vulnerabilities — CVE-2020-16875 (authenticated remote code execution in Exchange Server) and CVE-2023-23397 (a zero-interaction Outlook flaw confirmed to be exploited in the wild and potentially tied to nation-state actors) — and urges organizations to apply patches and implement mitigations to reduce risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.