In an Exchange Server 2013 environment, if security update 3150501 (dated June 14, 2016) is installed, HTML input tags are evaluated by a new function, and this prevents information disclosure. However, an input tag without an image such as <input type=text value=valuecontent> in the body of an email message may not be evaluated as expected and may not be displayed in Outlook Web Access.

More Information

This update optimizes how HTML tags are evaluated in Exchange Server 2013 if security update 3150501 is installed.

Cumulative update information

For Exchange Server 2013

This optimization is included in Cumulative Update 15 for Exchange Server 2013 or a later cumulative update for Exchange Server 2013.


You must have security update 3150501 that is dated June 14, 2016 installed to get this HTML optimization.


Learn about the terminology that Microsoft uses to describe software updates.

Need more help?

Expand your skills
Explore Training
Get new features first
Join Microsoft Insiders

Was this information helpful?

What affected your experience?

Thank you for your feedback!