Vulnerability Database

324,292

Total vulnerabilities in the database

CVE-2026-21527

User interface (ui) misrepresentation of critical information in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.

  • Published: Feb 10, 2026
  • Updated: Feb 11, 2026
  • CVE: CVE-2026-21527
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Software From Fixed in
microsoft / exchange_server - 15.02.2562.037
microsoft / exchange_server 2016-cumulative_update_23 2016-cumulative_update_23.x
microsoft / exchange_server 2019-cumulative_update_14 2019-cumulative_update_14.x
microsoft / exchange_server 2019-cumulative_update_15 2019-cumulative_update_15.x