Microsoft Exchange Server Security Update Advisory (CVE-2025-53786)
Overview
Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products it has supplied. Users of affected products are advised to update to the latest version.
Affected Products
Microsoft Exchange Server 2016 Cumulative Update 23 and earlier
Microsoft Exchange Server 2019 Cumulative Update 14 and earlier
Microsoft Exchange Server 2019 Cumulative Update 15 and earlier
Microsoft Exchange Server Subscription Edition RTM Previous Versions
Resolved Vulnerabilities
One vulnerability rated Important has been discovered.
A Critical-rated privilege escalation vulnerability in Microsoft Exchange Server (CVE-2025-53786)
Vulnerability Patches
The following product-specific Vulnerability Patches were made available in the August 6, 2025 Update. Please use the Windows Update feature for automatic installation or refer to the URLs in the product information below to download and install.
Microsoft Exchange Server 2016 Cumulative Update 23 version
https://www.microsoft.com/en-us/download/details.aspx?id=108147
Microsoft Exchange Server 2019 Cumulative Update 14 version
https://www.microsoft.com/en-us/download/details.aspx?id=108146
Microsoft Exchange Server 2019 Cumulative Update 15 version
https://www.microsoft.com/en-us/download/details.aspx?id=108144
Microsoft Exchange Server Subscription Edition RTM version