Microsoft Exchange Server Security Update Advisory (CVE-2025-53786)

Microsoft Exchange Server Security Update Advisory (CVE-2025-53786)

Overview

 

Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products it has supplied. Users of affected products are advised to update to the latest version.

 

Affected Products

 

Microsoft Exchange Server 2016 Cumulative Update 23 and earlier

Microsoft Exchange Server 2019 Cumulative Update 14 and earlier

Microsoft Exchange Server 2019 Cumulative Update 15 and earlier

Microsoft Exchange Server Subscription Edition RTM Previous Versions

 

Resolved Vulnerabilities

 

One vulnerability rated Important has been discovered.

A Critical-rated privilege escalation vulnerability in Microsoft Exchange Server (CVE-2025-53786)

 

Vulnerability Patches

 

The following product-specific Vulnerability Patches were made available in the August 6, 2025 Update. Please use the Windows Update feature for automatic installation or refer to the URLs in the product information below to download and install.

Microsoft Exchange Server 2016 Cumulative Update 23 version

https://www.microsoft.com/en-us/download/details.aspx?id=108147

Microsoft Exchange Server 2019 Cumulative Update 14 version

https://www.microsoft.com/en-us/download/details.aspx?id=108146

Microsoft Exchange Server 2019 Cumulative Update 15 version

https://www.microsoft.com/en-us/download/details.aspx?id=108144

Microsoft Exchange Server Subscription Edition RTM version

https://www.microsoft.com/download/details.aspx?id=108244