H4x0r.DZ 🇰🇵[verified]@h4x0r_dzPoC
The post announces a pre‑authentication remote code execution flaw (CVE‑2026‑62911) in Microsoft Exchange Server and provides a GitHub repository containing a proof‑of‑concept exploit, with no mention of active exploitation, patches, or false‑positives.
Rıdvan Yağlı[verified]@ridvanyagliPoC
A proof‑of‑concept for CVE‑2026‑62911, targeting Microsoft Exchange Server, has been released showing authentication bypass, privilege escalation, and remote code execution, but no active exploitation or patch information is provided.
Ryx[verified]@PadhiyarRushiPoC
A public Python PoC for the CVE-2026-62911 Exchange pre-auth RCE chain (demonstrated at Pwn2Own Berlin) is circulating, with August patches available but unpatched on-prem systems at risk.
kokumօtօ[verified]@__kokumotoPoC
A proof‑of‑concept for CVE-2026‑62911, a remote code execution vulnerability in Exchange Server, has been released with technical details and a public link.
Terrance DeJesus[verified]@_xDeJesusPoC
The post shares PoC code links for Next.js Windows RCE and Exchange CVE-2026-62911, describing RCE and auth bypass details, but does not report active exploitation or patches.
Cyber Security News[verified]@The_Cyber_NewsActive Exploitation
Nearly 22,000 unpatched Microsoft Exchange servers remain exposed to CVE-2026-62911, an authentication-bypass flaw (CWE‑294, CVSS 8.0) that attackers can exploit, with daily scans confirming ongoing risk; no PoC, exploit tool, or patch information is provided.
dbugs[verified]@ptdbugsPoC
A proof‑of‑concept exploit for CVE-2026-62911, targeting authentication bypass in Microsoft Exchange Server 2016, has been released on GitHub.
Netlas.io[verified]@Netlas_ioPoC
CVE-2026-62911 is a pre-authenticaton Remote Code Execution flaw in Microsoft Exchange with an 8.0 CVSS score, and a public proof‑of‑concept has been released to demonstrate the exploitation.