Germany warns of 17K vulnerable Microsoft Exchange servers exposed online
ID: 22881a31-a720-57c0-b24e-a958021e2e8f
STIX ID: report--22881a31-a720-57c0-b24e-a958021e2e8f
Feed Name: Bleeping Computer
Threat Score
The German BSI warned that at least ~17,000 Microsoft Exchange servers in Germany are severely vulnerable—many running unsupported Exchange 2010/2013 or unpatched 2016/2019 instances—exposing them to critical flaws (including CVE-2024-21410) with reports of active exploitation; the advisory urges immediate installation of March 2024 security updates, enabling Extended Protection, and restricting OWA access (e.g., VPN or allowlists).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
