After upgrade Exchange Server 2016 CU18 to CU21 . CVE-2021-1730 vulnerability is still showing in health check.

Jazib Khan 1 Reputation point
2022-01-10T14:31:54.73+00:00

After upgrade Exchange Server 2016 CU18 to CU21 . CVE-2021-1730 vulnerability is still showing in health check.

163653-image.png

Exchange | Exchange Server | Management
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Andy David - MVP 158K Reputation points MVP Volunteer Moderator
    2022-01-10T14:35:34.85+00:00

    Thats a different vulnerability not covered by the latest CUs and security updates.

    Click on that link on how to resolve if needed:

    More info:
    https://learn.microsoft.com/en-us/answers/questions/573126/what-is-the-downside-of-enabling-34download-domain.html

    https://www.reddit.com/r/exchangeserver/comments/onhchg/download_domains_cve20211730_and_microsoft/

    0 comments No comments

  2. Aaron Xue-MSFT 2,596 Reputation points Microsoft External Staff
    2022-01-11T07:54:19.39+00:00

    Hi @Jazib Khan ,

    You could get a lot of information according to the document that andy have posted.

    And after you upgrade exchange server successfully.

    I do recommend you to install the latest security update to protect your environment.

    You could get the latesed su from this link.
    https://support.microsoft.com/en-us/topic/description-of-the-security-update-for-microsoft-exchange-server-2019-2016-and-2013-november-9-2021-kb5007409-7e1f235a-d41b-4a76-bcc4-3db90cd161e7


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.