Microsoft Exchange Server Flaw Exploited as a Zero-Day Bug
ID: 6cdc6d5e-80e5-58af-8f98-2adbcfc937cd
STIX ID: report--6cdc6d5e-80e5-58af-8f98-2adbcfc937cd
Feed Name: Dark Reading
**CVE-2024-21410** is a critical Exchange Server elevation-of-privilege vulnerability that allows remote, unauthenticated attackers to leak NTLM hashes and perform pass-the-hash/NTLM relay attacks; Microsoft has observed active exploitation (zero-day). Microsoft’s Feb 13 CU14 (2024 H1 cumulative update) enables Extended Protection for Authentication by default to mitigate the issue, and administrators must test EPA and account for compatibility constraints before deploying the update.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
