Security Research

CVE-2022-41082 Microsoft Exchange RCE: The SSRF Pre-Stage of ProxyNotShell

#Vulnerability Analysis#Code Audit#Lateral Movement
Exchange autodiscover endpoint SSRF chaining into the PowerShell back-end

The SSRF pre-stage of the ProxyNotShell attack chain — when CVE-2022-41082 exists alone, it only lets the attacker hit Exchange’s internal PowerShell Remoting, but combined with CVE-2022-41040 it becomes full-network RCE.

Unlock to view this content.