{"cvss":7.3,"datePublished":"2022-01-18","dateUpdated":"2022-01-18","description":"Microsoft Exchange Server contains an information disclosure vulnerability which can allow an unauthenticated attacker to steal email traffic from target.","dueDate":"2022-02-01","id":"CVE-2021-33766","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://nvd.nist.gov/vuln/detail/CVE-2021-33766","product":"Exchange Server","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Microsoft Exchange Server Information Disclosure","vendor":"Microsoft"}