CVE-2021-31196CISA KEVEPSS p99.0%

CVE-2021-31196Microsoft Exchange Server Information Disclosure Vulnerability

Microsoft / Exchange Server

Description

Microsoft Exchange Server contains an information disclosure vulnerability that allows for remote code execution.

Scoring

CVSS 7.2 ()
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS54.06% probability of exploitation · percentile 99.0% · 2026-10-04T12:00:21Z
Last modified2026-08-10

CISA KEV entry

Added to KEV: 2024-08-21

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Exchange Server Information Disclosure Vulnerabilitykev-cve-2021-311960%live

Related by meaning· 5

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Exchange Server Information Disclosure
CVE
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE
Microsoft Exchange Server Security Feature Bypass Vulnerability
CVE
Microsoft Exchange Server Deserialization of Untrusted Data Vulnerability
CVE
Microsoft Exchange Server Privilege Escalation Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.