T1104: Multi-Stage Channels
Essential information
- MITRE technique ID
T1104- Confidence
- 100/100
- Revoked
- No
- Published
- 16/12/2025 19:38
- Modified
- 27/03/2026 01:10
- Author / Source
- The MITRE Corporation
Aliases
T1104
Platforms
windows macos linux ESXi
Description
Kill chain phases
| Kill chain | Phase |
|---|---|
| mitre-attack | command-and-control |
Marking (TLP)
TLP:CLEAR Copyright 2015-2025, The MITRE Corporation. MITRE ATT&CK and ATT&CK are registered trademarks of The MITRE Corporation.
External references
Related entities
Intrusion sets, malware, reports, vulnerabilities, indicators and other entities linked to this technique.
Intrusion sets (APT) (38)
-
Hive0133 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 01:41 · Modified 21/12/2025 01:41
-
The MITRE Corporation Confidence 100
[BITTER](https://attack.mitre.org/groups/G1002) is a suspected South Asian cyber espionage threat group that has been active since at least 2013. [BITTER](https://attack.mitre.org/groups/G1002) has targeted government, energy, and engineering organizations in Pakistan, …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 09/04/2026 20:05 -
The MITRE Corporation Confidence 100
[Mustang Panda](https://attack.mitre.org/groups/G0129) is a China-based cyber espionage threat actor that has been conducting operations since at least 2012. [Mustang Panda](https://attack.mitre.org/groups/G0129) has been known to use tailored phishing lures …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 22/05/2026 04:12 -
The MITRE Corporation Confidence 100
[MuddyWater](https://attack.mitre.org/groups/G0069) is a cyber espionage group assessed to be a subordinate element within Iran's Ministry of Intelligence and Security (MOIS).(Citation: CYBERCOM Iranian Intel Cyber January 2022) Since at …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 04/05/2026 16:33 -
The MITRE Corporation Confidence 100
[APT28](https://attack.mitre.org/groups/G0007) is a threat group that has been attributed to Russia's General Staff Main Intelligence Directorate (GRU) 85th Main Special Service Center (GTsSS) military unit 26165.(Citation: NSA/FBI Drovorub …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 08/04/2026 13:02 -
Pensive Ursa usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 01:31 · Modified 21/12/2025 01:31
-
Blackwood usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 02:55 · Modified 21/12/2025 02:55
-
Flax Typhoon usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 07:13 · Modified 21/12/2025 07:13
-
TA402 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 01:35 · Modified 21/12/2025 01:35
-
Clasiopa usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:26 · Modified 20/12/2025 23:26
-
ITG10 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 00:41 · Modified 21/12/2025 00:41
-
The MITRE Corporation Confidence 100
[Magic Hound](https://attack.mitre.org/groups/G0059) is an Iranian-sponsored threat group that conducts long term, resource-intensive cyber espionage operations, likely on behalf of the Islamic Revolutionary Guard Corps. They have targeted European, …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13 -
REF4526 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 22:37 · Modified 20/12/2025 22:37
-
The MITRE Corporation Confidence 100
[APT-C-36](https://attack.mitre.org/groups/G0099) is a suspected South America espionage group that has been active since at least 2018. The group mainly targets Colombian government institutions as well as important corporations …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 04/05/2026 16:33 -
Lazarus usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 21:17 · Modified 29/05/2026 12:20
-
GhostSec usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 01:35 · Modified 21/12/2025 01:35
-
Sharp Panda usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:57 · Modified 20/12/2025 23:57
-
Deathstalker usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 21:52 · Modified 20/12/2025 23:05
-
The MITRE Corporation Confidence 100
[APT41](https://attack.mitre.org/groups/G0096) is a threat group that researchers have assessed as Chinese state-sponsored espionage group that also conducts financially-motivated operations. Active since at least 2012, [APT41](https://attack.mitre.org/groups/G0096) has been observed …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:14 -
TA542 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 22:23 · Modified 20/12/2025 22:23
-
The MITRE Corporation Confidence 100
[menuPass](https://attack.mitre.org/groups/G0045) is a threat group that has been active since at least 2006. Individual members of [menuPass](https://attack.mitre.org/groups/G0045) are known to have acted in association with the Chinese Ministry …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13 -
BADBOX 2.0 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 10:31 · Modified 21/12/2025 10:31
-
Ice Breaker usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:29 · Modified 20/12/2025 23:29
-
PlushDaemon usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 10:10 · Modified 21/12/2025 10:10
-
The MITRE Corporation Confidence 100
[OilRig](https://attack.mitre.org/groups/G0049) is a suspected Iranian threat group that has targeted Middle Eastern and international victims since at least 2014. The group has targeted a variety of sectors, including …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13 -
The MITRE Corporation Confidence 100
[APT29](https://attack.mitre.org/groups/G0016) is threat group that has been attributed to Russia's Foreign Intelligence Service (SVR).(Citation: White House Imposing Costs RU Gov April 2021)(Citation: UK Gov Malign RIS Activity April …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 04/05/2026 16:33 -
TEMP.Hermit usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:34 · Modified 20/12/2025 23:34
-
The MITRE Corporation Confidence 100
[APT38](https://attack.mitre.org/groups/G0082) is a North Korean state-sponsored threat group that specializes in financial cyber operations; it has been attributed to the Reconnaissance General Bureau.(Citation: CISA AA20-239A BeagleBoyz August 2020) …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 04/05/2026 16:33 -
Magecart usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 00:17 · Modified 21/12/2025 00:17
-
The MITRE Corporation Confidence 100
[Lazarus Group](https://attack.mitre.org/groups/G0032) is a North Korean state-sponsored cyber threat group attributed to the Reconnaissance General Bureau (RGB). (Citation: US-CERT HIDDEN COBRA June 2017) (Citation: Treasury North Korean Cyber …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13 -
IMPERIAL KITTEN usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 21/12/2025 01:51 · Modified 21/12/2025 01:51
-
The MITRE Corporation Confidence 100
[APT3](https://attack.mitre.org/groups/G0022) is a China-based threat group that researchers have attributed to China's Ministry of State Security.(Citation: FireEye Clandestine Wolf)(Citation: Recorded Future APT3 May 2017) This group is responsible …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 04/05/2026 16:33 -
Earth Bogle relatedAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:11 · Modified 20/12/2025 23:11
-
El Machete, SideWinder, Lyceum relatedAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 19:34 · Modified 20/12/2025 19:34
-
The MITRE Corporation Confidence 100
[Sidewinder](https://attack.mitre.org/groups/G0121) is a suspected Indian threat actor group that has been active since at least 2012. They have been observed targeting government, military, and business entities throughout Asia, …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:14 -
ToddyCat relatedThe MITRE Corporation Confidence 100
[ToddyCat](https://attack.mitre.org/groups/G1022) is a sophisticated threat group that has been active since at least 2020 using custom loaders and malware in multi-stage infection chains against government and military targets …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13 -
Water Minyades relatedAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 23:07 · Modified 20/12/2025 23:07
-
Worok relatedAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 22:03 · Modified 20/12/2025 22:03
Malware (134)
- SentinelSneak
-
Nitrogen usesFamilyPublished 20/05/2025 19:27 · Modified 20/05/2025 19:27
-
Conti usesFamilyPublished 27/09/2024 13:43 · Modified 27/09/2024 13:43
-
Latrodectus usesFamilyPublished 12/06/2026 21:29 · Modified 12/06/2026 21:29
-
MadMxShell usesFamilyPublished 15/07/2024 14:52 · Modified 15/07/2024 14:52
-
DUCKTAIL usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 19:35 · Modified 21/12/2025 01:43
-
XMRig usesFamilyPublished 28/05/2026 10:56 · Modified 28/05/2026 10:56
-
PE_URSNIF usesFamilyPublished 05/06/2026 18:07 · Modified 05/06/2026 18:07
- Stonefly
- Trojan:Win64/NukeSped
- Luna Grabber
-
LunarWeb usesFamilyPublished 16/05/2024 09:35 · Modified 16/05/2024 09:35
- VileLoader
- Valak
-
TrojanSpy usesFamilyPublished 25/03/2025 21:10 · Modified 25/03/2025 21:10
- JSObfuscated
- Sidewinder
-
SlowStepper usesFamilyPublished 19/11/2025 21:09 · Modified 19/11/2025 21:09
- Ekipa
- Bazar
- Five Eyes
- Roaming Mantis
- WarzoneRAT
- NETWIRE
- GhostLocker
- ProxyShellMiner
-
PolarEdge usesFamilyPublished 01/09/2025 09:30 · Modified 01/09/2025 09:30
- Lamberts
- Karkoff
- El Machete
- TOUCHSHIFT
- Dridex
-
Akira usesFamilyPublished 12/06/2026 16:57 · Modified 12/06/2026 16:57
-
NJRat usesFamilyPublished 05/03/2025 11:12 · Modified 05/03/2025 11:12
- MATA
- ROOTSAW
- LIDSHOT
- VMConnect
- Exodus Wallet
- Uroburos
- Popping Eagle
-
DBatLoader usesFamilyPublished 27/06/2024 09:26 · Modified 27/06/2024 09:26
- ZxxZ
-
IcedID usesFamilyPublished 29/04/2024 19:15 · Modified 29/04/2024 19:15
-
Nosedive usesFamilyPublished 20/09/2024 11:41 · Modified 20/09/2024 11:41
- Almond
-
Lumma Stealer usesFamilyPublished 08/06/2026 19:36 · Modified 08/06/2026 19:36
-
Agent Tesla usesFamilyPublished 28/05/2024 13:32 · Modified 28/05/2024 13:32
- SIDESHOW
-
DanaBot usesFamilyPublished 03/11/2025 14:28 · Modified 03/11/2025 14:28
-
Hijackloader usesFamilyPublished 10/06/2026 11:58 · Modified 10/06/2026 11:58
-
Redline usesFamilyPublished 08/05/2026 11:31 · Modified 08/05/2026 11:31
-
LimeRAT usesFamilyPublished 26/08/2025 15:21 · Modified 26/08/2025 15:21
- LodaRAT
- LIDSHIFT
- StealthMutant
- FastFire
- BLACKCOFFEE
- PLANKWALK
- TEL:Hacktool:Win32/Plink
- CryptoClippy
-
Phemedrone usesFamilyPublished 23/10/2025 13:51 · Modified 23/10/2025 13:51
- JumbledPath
- LIGHTSHIFT
-
Matanbuchus usesFamilyPublished 09/12/2025 05:39 · Modified 09/12/2025 05:39
-
SharpHound usesFamilyPublished 16/01/2026 13:31 · Modified 16/01/2026 13:31
- Derusbi
- SoulSearcher
-
Kimsuky usesFamilyPublished 11/06/2025 22:07 · Modified 11/06/2025 22:07
-
Mirai usesFamilyPublished 21/05/2026 23:03 · Modified 21/05/2026 23:03
-
WailingCrab usesFamilyPublished 02/09/2024 20:55 · Modified 02/09/2024 20:55
- S500
- BURNTBATTER
-
GootKit usesFamilyPublished 06/11/2024 14:29 · Modified 06/11/2024 14:29
-
Hijack Loader usesFamilyPublished 08/06/2026 19:36 · Modified 08/06/2026 19:36
-
BADBOX usesFamilyPublished 17/02/2026 12:39 · Modified 17/02/2026 12:39
- Chaos
- MuuyDownloader
-
Trochilus usesFamilyPublished 20/05/2026 17:45 · Modified 20/05/2026 17:45
- dotRunpeX
-
ToneShell usesFamilyPublished 17/04/2026 18:56 · Modified 17/04/2026 18:56
- GootBot
-
BatLoader usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 19:37 · Modified 21/12/2025 01:35
- Earth Lusca
- Engima Stealer
- MacStealer
-
Havoc usesFamilyPublished 08/06/2026 10:30 · Modified 08/06/2026 10:30
-
QakBot usesFamilyPublished 30/05/2024 14:20 · Modified 30/05/2024 14:20
- Emotet
-
Vidar usesFamilyPublished 16/06/2026 09:50 · Modified 16/06/2026 09:50
-
NukeSped usesFamilyPublished 10/04/2025 18:50 · Modified 10/04/2025 18:50
-
SparkRAT usesFamilyPublished 20/02/2026 00:28 · Modified 20/02/2026 00:28
-
COPPERHEDGE usesFamilyPublished 24/04/2025 08:13 · Modified 24/04/2025 08:13
- Trojan:Win32/Nukesped
- Snip3
- Golang
- MASEPIE
- BokBot
-
AveMaria usesFamilyPublished 26/11/2025 14:09 · Modified 26/11/2025 14:09
-
IronWind usesFamilyPublished 12/11/2024 20:31 · Modified 12/11/2024 20:31
- MataDoor
- Coinbase API
- Impala
-
AsyncRAT usesFamilyPublished 11/06/2026 16:31 · Modified 11/06/2026 16:31
- BACKSPACE
-
Chalubo usesFamilyPublished 04/06/2024 15:58 · Modified 04/06/2024 15:58
- Bumblebee
- Linux MATA
-
QRLog usesFamilyPublished 21/01/2025 22:17 · Modified 21/01/2025 22:17
-
zgRAT usesFamilyPublished 21/08/2025 00:37 · Modified 21/08/2025 00:37
-
PureLogs usesFamilyPublished 26/05/2026 15:20 · Modified 26/05/2026 15:20
- JokerSpy
- Houdini RAT
- ARCrypter
- TONEINS
- SYK
-
Neshta usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 Published 20/12/2025 19:36 · Modified 20/12/2025 22:24
- Geacon
- BotenaGo
- SprySOCKS
- Gopuram
-
FormBook usesFamilyPublished 22/04/2026 12:43 · Modified 22/04/2026 12:43
-
RedLeaves usesFamilyPublished 08/01/2026 16:30 · Modified 08/01/2026 16:30
- Detects
- EVILNUM
-
Linux usesFamilyPublished 15/10/2024 17:58 · Modified 15/10/2024 17:58
-
WINELOADER usesFamilyPublished 15/04/2025 18:49 · Modified 15/04/2025 18:49
- Saitama
- Royal
- Fastviewer
- Going Eagle
- StandardKeyboard
- APT29
-
cipher_log usesFamilyPublished 25/02/2025 10:03 · Modified 25/02/2025 10:03
Reports (6)
-
9 MITREs 1 Malware 59 Observables 1 APTPublished 06/03/2025 12:31 · Modified 06/03/2025 15:40
-
1 CVE 16 MITREs 2 Malwares 31 ObservablesPublished 25/02/2025 10:03 · Modified 25/02/2025 12:12
-
32 MITREs 1 Malware 1 APTPublished 22/01/2025 14:41 · Modified 22/01/2025 19:17
-
Derailing the Raptor Train related1 CVE 16 MITREs 1 Malware 198 Observables 1 APTPublished 20/09/2024 11:41 · Modified 20/09/2024 12:18
-
10 MITREs 1 Malware 176 ObservablesPublished 04/06/2024 15:58 · Modified 04/06/2024 16:31
-
1 MITRE 1 Malware 9 ObservablesPublished 23/05/2024 13:50 · Modified 23/05/2024 13:54
Vulnerabilities (CVE) (34)
OSGeo GeoServer GeoTools contains an improper neutralization of directives in dynamically evaluated code vulnerability due to unsafely evaluating property names as XPath …
- Attack vector
- Network
- Published
- 15/07/2024
- Modified
- 21/12/2025
The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.
- Published
- 27/06/2022
- Modified
- 20/12/2025
targets
Dell dbutil driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial-of-service (DoS), or information disclosure.
- Published
- 31/03/2022
- Modified
- 29/05/2026
Ivanti Connect Secure (ICS, formerly known as Pulse Connect Secure) and Ivanti Policy Secure contain a command injection vulnerability in the web …
- Attack vector
- Network
- Published
- 10/01/2024
- Modified
- 27/05/2026
Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi …
- Attack vector
- LOCAL
- Complexity
- High
- Published
- 04/07/2024
- Modified
- 08/04/2026
Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code …
- Published
- 03/11/2021
- Modified
- 27/05/2026
Intel ethernet diagnostics driver for Windows IQVW32.sys and IQVW64.sys contain an unspecified vulnerability that allows for a denial-of-service (DoS).
- Attack vector
- LOCAL
- Complexity
- LOW
- Published
- 09/08/2017
- Modified
- 22/04/2026
SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries …
- Attack vector
- Network
- Published
- 29/04/2025
- Modified
- 21/12/2025
targets
Microsoft SharePoint contains a code injection vulnerability that could allow an authorized attacker to execute code over a network. This vulnerability could …
- Attack vector
- Network
- Published
- 22/07/2025
- Modified
- 21/12/2025
targets
RARLAB WinRAR contains an unspecified vulnerability that allows an attacker to execute code when a user attempts to view a benign file …
- Attack vector
- Local
- Published
- 24/08/2023
- Modified
- 27/05/2026
Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may …
- Attack vector
- Network
- Published
- 09/06/2025
- Modified
- 27/05/2026
Microsoft Exchange Server contains an unspecified vulnerability that allows for privilege escalation.
- Published
- 03/11/2021
- Modified
- 20/12/2025
targets
Fortinet FortiOS, FortiProxy, and FortiSwitchManager contain an authentication bypass vulnerability that could allow an unauthenticated attacker to perform operations on the administrative …
- Attack vector
- Network
- Published
- 11/10/2022
- Modified
- 14/01/2026
targets
Howyar UEFI Application "Reloader" (32-bit and 64-bit) is vulnerable to execution of unsigned software in a hardcoded path.
- Attack vector
- LOCAL
- Published
- 14/01/2025
- Modified
- 21/12/2025
targets
targets
A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An …
- Published
- 14/06/2022
- Modified
- 27/05/2026
Microsoft Windows SmartScreen contains a security feature bypass vulnerability that could allow an attacker to bypass Windows Defender SmartScreen checks and their …
- Attack vector
- Network
- Published
- 14/11/2023
- Modified
- 21/12/2025
Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi …
- Attack vector
- LOCAL
- Complexity
- Low
- Published
- 29/11/2024
- Modified
- 08/04/2026
targets
targets
Microsoft SharePoint contains an improper authentication vulnerability that allows an authorized attacker to perform spoofing over a network. Successfully exploitation could allow …
- Attack vector
- Network
- Published
- 22/07/2025
- Modified
- 21/12/2025
Multiple Cisco Small Business RV Series Routers contains a command injection vulnerability in the web-based management interface. Successful exploitation could allow an …
- Attack vector
- Network
- Published
- 03/03/2025
- Modified
- 21/12/2025
Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric …
- Attack vector
- Local
- Published
- 23/10/2024
- Modified
- 09/01/2026
Microsoft Office contains a memory corruption vulnerability that allows remote code execution in the context of the current user.
- Attack vector
- Local
- Complexity
- Low
- Published
- 15/11/2017
- Modified
- 29/05/2026
Progress Telerik UI for ASP.NET AJAX contains a deserialization of untrusted data vulnerability through RadAsyncUpload which leads to code execution on the …
- Published
- 03/11/2021
- Modified
- 20/12/2025
GitHub Community and Enterprise Editions that utilize the ability to upload images through GitLab Workhorse are vulnerable to remote code execution. Workhorse …
- Published
- 03/11/2021
- Modified
- 20/12/2025
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution.
- Published
- 03/11/2021
- Modified
- 29/05/2026
Microsoft Exchange Server contains an unspecified vulnerability that allows for security feature bypass.
- Published
- 03/11/2021
- Modified
- 20/12/2025
Course Of Action (1)
- Network Intrusion Prevention mitigates