TLP Rating: White
On-Premises Exchange Server Vulnerabilities - CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-27065.
CERT Vanuatu (CERTVU) and the Office of the Government Information Officer was alerted of these vulnerabilities by its international partners.
The CERTVU office would like to advise institutions and corporate companies with on-premises Exchange Servers. Microsoft has detected multiple 0-day exploits being used to attack on-premises versions of MS Exchange servers in limited and targeted attacks.
References
- https://msrc-blog.microsoft.com/2021/03/02/multiple-security-updates-released-forexchange-server/
- https://www.microsoft.com/security/blog/2021/03/02/hafnium-targeting-exchangeservers/
- https://www.cyber.gov.au/acsc/view-all-content/advisories/advisory-2021-002-activeexploitation-vulnerable-microsoft-exchange-servers
- https://msrc-blog.microsoft.com/2021/03/05/microsoft-exchange-server-vulnerabilitiesmitigations-march-2021/
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-26855
- Download advisory (English): On-Premises Exchange Server Vulnerabilities - CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-27065.
- Download advisory (French): Vulnérabilités du serveur Exchange sur site - CVE-2021-26855, CVE2021-26857, CVE-2021-26858 et CVE-2021-27065.
- Download advisory (Bislama): Olgeta ‘Exchange Server’ Vulnerabiliti insaed long ol Ofis - CVE- 2021-26855, CVE-2021-26857, CVE-2021-26858, mo CVE-2021-27065.