The principal problem is that Outlook Web Access and Exchange Web Services run on the same web server and are both enabled by default, and often enterprises ignore it.
It appears that Outlook portals that are being protected by two-factor authentication might not be covering all of the authentication protocols to Microsoft Exchange
securityaffairs.co/wordpress/53147/hacking/outlook-web-access.html
No comments:
Post a Comment