S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Feb 22, 2026

CVE-2021-28481 Scanner

CVE-2021-28481 Scanner - Server-Side Request Forgery (SSRF) vulnerability in Microsoft Exchange Server

Est. Time~1 minutes
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.2k
Times Used
continuous scan runs
4.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2021-28481
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.
Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Microsoft Exchange Server 2019 Cumulative Update 9by Microsoft
AFFECTED< 15.02.0858.010SAFE ✓≥ 15.02.0858.010
Microsoft Exchange Server 2016 Cumulative Update 20by Microsoft
AFFECTED< 15.01.2242.008SAFE ✓≥ 15.01.2242.008
Microsoft Exchange Server 2013 Cumulative Update 23by Microsoft
AFFECTED< 15.00.1497.015SAFE ✓≥ 15.00.1497.015
Microsoft Exchange Server 2016 Cumulative Update 19by Microsoft
AFFECTED< 15.01.2176.012SAFE ✓≥ 15.01.2176.012
Updated Aug 21, 2026View on NVD →
Detail

Microsoft Exchange Server is widely used in organizations for email, calendaring, and other collaborative services. It is commonly deployed by IT administrators in enterprises of all sizes to manage email communications and scheduling. Exchange Server facilitates communication among corporate users and integrates with other enterprise systems. Its use spans multiple industries, including finance, healthcare, and government. Often managed on-premises with network access, its security is vital to prevent unauthorized access and data breaches. Administrators frequently update their servers with the latest patches to preserve integrity and availability.

The vulnerability allowing Server-Side Request Forgery (SSRF) can enable attackers to send crafted requests from the vulnerable system to unintended targets. This issue arises when the server misinterprets data requests without verifying their origin. It could lead to undesired actions executed in the server context. Attackers might exploit this to connect to internal services that would otherwise be inaccessible. The SSRF vulnerability in Exchange Server could further be a vector for additional vulnerabilities or data access. Attention to server configurations can mitigate this risk.

This SSRF vulnerability in Microsoft Exchange Server involves improper validation of privileged endpoint requests. The primary vulnerable endpoint is the server's ability to process requests incorrectly. By manipulating headers like 'X-BackEndCookie' and 'X-AnchorMailbox', an attacker could bypass normal access controls. The 'rawXor' variable, constructed through precise encoding techniques, plays a crucial role in crafting viable attack requests. Successful exploitation could imply leveraging of internal server connections which should only be accessible under authenticated scenarios. Protection involves relentless server updates and examination of internal request handling.

The exploitation of this SSRF vulnerability might lead an attacker to further threat actions, such as unauthorized data access. Malicious actors can potentially perform unauthorized operations inside the trusted network perimeter. There is the risk of data exposure or even execution of arbitrary code under certain conditions. Attackers could pivot and leverage additional vulnerabilities, leading to system compromise. The exploitation of this vulnerability could cause severe repercussions, such as data breaches or service disruption, impacting business operation.

REFERENCES

Solution Advice
  • Apply the latest security patches and updates provided by Microsoft for Exchange Server.
  • Implement additional request validation and sanitization measures on input endpoints.
  • Monitor server logs for unusual internal request patterns indicating SSRF exploit attempts.
  • Segregate network access to critical Exchange services to mitigate unauthorized internal requests.
  • Conduct regular security audits and scans to identify misconfigurations or vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.