logo

Microsoft Exchange Server Flaw Exploited as a Zero-Day Bug

ID: 6cdc6d5e-80e5-58af-8f98-2adbcfc937cd

STIX ID: report--6cdc6d5e-80e5-58af-8f98-2adbcfc937cd

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2024-02-15

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

**CVE-2024-21410** is a critical Exchange Server elevation-of-privilege vulnerability that allows remote, unauthenticated attackers to leak NTLM hashes and perform pass-the-hash/NTLM relay attacks; Microsoft has observed active exploitation (zero-day). Microsoft’s Feb 13 CU14 (2024 H1 cumulative update) enables Extended Protection for Authentication by default to mitigate the issue, and administrators must test EPA and account for compatibility constraints before deploying the update.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.