Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the owalogon.asp application.
From 神龙GPT (AIGC)
Microsoft Outlook Web Access (OWA) 与 Exchange 一起使用时,允许远程攻击者通过指向 owalogon.asp 应用程序的链接将用户重定向到任意 URL 进行登录。