Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Microsoft Exchange Server 2016 Cumulative Update 23 — Vulnerabilities & Security Advisories 33

All 33 CVE vulnerabilities found in Microsoft Exchange Server 2016 Cumulative Update 23, with AI-generated Chinese analysis, references, and POCs.

This page documents security weaknesses associated with the Microsoft Exchange Server 2016 Cumulative Update 23 release, focusing on various vulnerability classifications identified by security researchers and official vendors. It aggregates a comprehensive list of known security flaws affecting this specific version of the Microsoft Exchange Server software, covering issues reported from the initial release of the cumulative update through current discovery dates. Users can utilize this resource to effectively track vendor advisories related to Microsoft Exchange, gaining insight into the specific remediation steps required for each identified issue. Furthermore, the page allows for a deeper understanding of common weakness classes prevalent in enterprise email servers, helping administrators prioritize patches based on severity and exploitability. By examining the historical vulnerability data for this product, IT professionals can assess the risk landscape and understand the evolution of security threats targeting Microsoft Exchange Server 2016. This centralized view supports informed decision-making for system updates and helps organizations maintain compliance with security best practices. The information provided serves as a reference for security analysts and system administrators alike, offering a clear overview of the technical debt and potential exposure points inherent in this software version. It is designed to facilitate efficient vulnerability management and enhance the overall security posture of environments relying on this specific Microsoft Exchange infrastructure.

Vendor: Microsoft

CVE IDTitleCVSSSeverityPublished
CVE-2026-47631 Microsoft Exchange Server Spoofing Vulnerability CWE-79 8.1 High2026-06-09
CVE-2026-45583 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-94 7.5 High2026-06-09
CVE-2026-45503 Microsoft Exchange Server Information Disclosure Vulnerability CWE-285 8.1 High2026-06-09
CVE-2026-45504 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-918 8.8 High2026-06-09
CVE-2026-45501 Microsoft Exchange Server Spoofing Vulnerability CWE-918 6.5 Medium2026-06-09
CVE-2026-45502 Microsoft Exchange Server Information Disclosure Vulnerability CWE-918 5.0 Medium2026-06-09
CVE-2026-45500 Microsoft Exchange Server Spoofing Vulnerability CWE-79 6.1 Medium2026-06-09
CVE-2026-42897 Microsoft Exchange Server Spoofing Vulnerability CWE-79 8.1 High2026-05-14
CVE-2026-21527 Microsoft Exchange Server Spoofing Vulnerability CWE-451 6.5 Medium2026-02-10
CVE-2025-64666 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-20 7.5 High2025-12-09
CVE-2025-64667 Microsoft Exchange Server Spoofing Vulnerability CWE-451 5.3 Medium2025-12-09
CVE-2025-59248 Microsoft Exchange Server Spoofing Vulnerability CWE-20 7.5 High2025-10-14
CVE-2025-59249 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-1390 8.8 High2025-10-14
CVE-2025-53782 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-303 8.4 High2025-10-14
CVE-2025-25007 Microsoft Exchange Server Spoofing Vulnerability CWE-1286 5.3 Medium2025-08-12
CVE-2025-25006 Microsoft Exchange Server Spoofing Vulnerability CWE-167 5.3 Medium2025-08-12
CVE-2025-25005 Microsoft Exchange Server Tampering Vulnerability CWE-20 6.5 Medium2025-08-12
CVE-2025-33051 Microsoft Exchange Server Information Disclosure Vulnerability CWE-200 7.5 High2025-08-12
CVE-2025-53786 Microsoft Exchange Server Hybrid Deployment Elevation of Privilege Vulnerability CWE-287 8.0 High2025-08-06
CVE-2024-21410 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-287 9.8 Critical2024-02-13
CVE-2023-36035 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36039 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36439 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36756 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-09-12
CVE-2023-36757 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-09-12
CVE-2023-28310 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-06-14
CVE-2023-21710 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 7.2 High2023-02-14
CVE-2023-21707 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.8 High2023-02-14
CVE-2023-21761 Microsoft Exchange Server Information Disclosure Vulnerability CWE-918 7.5 High2023-01-10
CVE-2023-21745 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-01-10

All 33 known CVE vulnerabilities affecting Microsoft Exchange Server 2016 Cumulative Update 23 with full Chinese analysis, references, and POCs where available.