CVE-2025-58107Disclosure

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensitive data from Samsung mobile devices in cleartext, including the user's name, e-mail address, device ID, bearer token, and base64-encoded password.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-319

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-03-05); latest day: 1
  • 4 total mentions across 4 days

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1Mentions · 2026-03-07: 1Mentions · 2026-04-10: 1Patch / Workaround · 2026-04-10: 1Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 1Technical Details · 2026-03-07: 1Technical Details · 2026-04-10: 103-0503-0603-0704-10
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Patch
125.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-03-051
Disclosure1
2026-03-061
Disclosure1
2026-03-071
General1
2026-04-101
Patch1
Full discourse4 posts
  • Hakan Uzuner@hakanuzuner
    Patch

    Exchange’te Kritik Açık: Mobil Senkronizasyondan Veri Sızdıran Yeni Risk! Microsoft Exchange tarafında özellikle on-prem çalışan kurumları yakından ilgilendiren yeni bir güvenlik açığı gündemde. CVE-2025-58107 olarak tanımlanan bu zafiyet, Microsoft Exchange Server üzerinde mobil cihazlarla yapılan senkronizasyon süreçlerinde ciddi veri sızıntısı riskleri oluşturuyor. Benim dikkatimi çeken nokta şu: olay klasik bir “patch gelir kapatırız” seviyesinden biraz daha farklı. Çünkü açık doğrudan Exchange ActiveSync davranışı ve bazı cihaz implementasyonları ile ilgili. Teknik analizlere göre özellikle bazı Samsung cihazlar ile yapılan ActiveSync bağlantılarında kritik veriler her zaman beklediğimiz şekilde korunmuyor. Ağ üzerinden geçen bazı bilgiler: *Kullanıcı adı *E-posta adresi *Cihaz kimliği *Authentication token’ları *Base64 formatında şifreler bazı senaryolarda cleartext (şifrelenmemiş) olarak taşınabiliyor. Bu da şu anlama geliyor: ağ trafiğini dinleyebilen biri için ciddi bir “low effort / high impact” saldırı yüzeyi oluşuyor. Çözüm Nedir? *ActiveSync için TLS 1.2+ zorunlu hale getirilmeli *HTTP tamamen kapatılmalı (SSL enforcement şart) *Eski TLS ve legacy protokoller devre dışı bırakılmalı *Mümkünse Modern Authentication (OAuth) kullanılmalı *Exchange sunucular güncel tutulmalı *Network tarafında segmentasyon + monitoring yapılmalı

    Post summary

    The post outlines CVE‑2025‑58107’s mobile sync data leakage risk and provides concrete mitigation steps, focusing on patching and configuration changes.

    01021642
    7.3K followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-58107 (CVSS:7.5, HIGH) is Awaiting Analysis. In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensiti..https://nvd.nist.gov/vuln/detail/CVE-2025-58107 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet briefly highlights CVE‑2025‑58107 with a CVSS 7.5 rating and notes potential data exposure in Exchange ActiveSync, but lacks PoC, exploit, or patch details.

    00000109
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-58107 (CVSS:7.5, HIGH) is Awaiting Analysis. In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensiti..https://nvd.nist.gov/vuln/detail/CVE-2025-58107 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces CVE-2025-58107 with a CVSS score of 7.5 (HIGH) and notes that it is awaiting analysis. No proof‑of‑concept, exploit, patch, or active exploitation details are provided.

    0000048
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-58107 (CVSS:7.5, HIGH) is Awaiting Analysis. In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensiti..https://nvd.nist.gov/vuln/detail/CVE-2025-58107 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    A high‑severity CVE targeting Microsoft Exchange ActiveSync is documented on the NVD, but no PoC, exploit, active exploitation, patches, or debunking claims are provided.

    0000038
    173 followersView on X

Explore more