A remote code execution vulnerability exists in Microsoft Exchange through the deserialization of metadata via PowerShell, aka 'Microsoft Exchange Remote Code Execution Vulnerability'.
No PoCs from references.
- https://github.com/FDlucifer/Proxy-Attackchain