ON
← Back to feed
Exchange vulnerability: 85 percent of on-prem servers in Germany are vulnerable
Germany🏛️ PoliticsCenter22 hr. ago

Exchange vulnerability: 85 percent of on-prem servers in Germany are vulnerable

Ein Proof-of-Concept-Exploit (PoC) für eine Sicherheitslücke in Exchange-Servern wurde kurz vor dem Wochenende veröffentlicht, was Angriffe auf verwundbare Server ermöglichen könnte. Das CERT-Bund des BSI teilt mit, dass 85 Prozent der On-Premises-Exchange-Server in Deutschland weiterhin anfällig sind. Die Lücke CVE-2026-62911 wurde von Microsoft im August mit einem Patch geschlossen, doch viele Server haben den Update nicht angewandt. Das BSI warnt dringend, dass Betreiber die Updates sofort anwenden sollten. Für Exchange 2016 und 2019 ist der reguläre Support seit Oktober 2025 beendet, wodurch nur Teilnehmer am kostenpflichtigen ESU-Patchprogramm aktualisiert werden können. Laut BSI sind bislang nur neun dieser Server mit Patches versehen worden. Das BSI rät zudem zur Beschränkung von Internet-Zugriffen auf Exchange-Dienste.

Go to the primary sources (2)

The official sources this coverage is built on. Read them directly to bypass framing.

1 reports

heise online logoheise onlineIndependentCenter22 hr. ago
Exchange vulnerability: 85 percent of on-prem servers in Germany are vulnerable

Ein Proof-of-Concept-Exploit (PoC) für eine Sicherheitslücke in Exchange-Servern wurde kurz vor dem Wochenende veröffentlicht, was Angriffe auf verwundbare Server ermöglichen könnte. Das CERT-Bund des BSI teilt mit, dass 85 Prozent der On-Premises-Exchange-Server in Deutschland weiterhin anfällig sind. Die Lücke CVE-2026-62911 wurde von Microsoft im August mit einem Patch geschlossen, doch viele Server haben den Update nicht angewandt. Das BSI warnt dringend, dass Betreiber die Updates sofort anwenden sollten. Für Exchange 2016 und 2019 ist der reguläre Support seit Oktober 2025 beendet, wodurch nur Teilnehmer am kostenpflichtigen ESU-Patchprogramm aktualisiert werden können. Laut BSI sind bislang nur neun dieser Server mit Patches versehen worden. Das BSI rät zudem zur Beschränkung von Internet-Zugriffen auf Exchange-Dienste.

Bias read (Center): Die Berichterstattung bleibt sachlich und informativ, ohne klare politische Einflussnahme. Es wird keine Partei oder politische Gruppe direkt kritisiert oder favorisiert. Die Hauptschwerpunkte liegen auf technischen Aspekten und Warnungen des BSI, ohne emotionale oder ideologische Bewertungen.

How each side covered it

The same event, grouped by the political lean of the outlets covering it.

How each side covered it

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Covered around the world

The same event as reported in other countries.

Covered around the world

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Claims check

Key factual claims, and how many sources assert vs dispute each.

Claims check

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Keep the news honest.

ObjectiveNews is reader-funded and ad-free — we show you the bias instead of hiding it. Support independent journalism for €4/month.

Become a Supporter

Related stories