There is a new exploit chain dubbed, OWASSRF that threat actors are actively exploiting to gain arbitrary code execution through Outlook Web Access (OWA) on vulnerable servers that bypasses ProxyNotShell URL rewrite mitigations. A recent investigation by CrowdStrike Services found that Microsoft Exchange ProxyNotShell vulnerabilities are probably enabled the common entry vector for several Play […]
The post <strong>OWASSRF – New Exploit Let Attacker Execute Remote Code on Microsoft Exchange Server</strong> appeared first on GBHackers - Latest Cyber Security News | Hacker News.