RadiologieLuebeck and adenluong I guess you are also affected, but before you can install the critical fixes you have to move / install the latest CU or SP for Exchange 2010. It may be possible to install the patch directly, but i'm not sure if that will work, we had to update our internal DAG to the latest CU and afterwards we installed the security patch.
On the top of this page you find this additional Info: https://techcommunity.microsoft.com/t5/exchange-team-blog/march-2021-exchange-server-security-updates-for-older-cumulative/ba-p/2192020
But i guess your to late, check first with the scripts from Microsoft if your compromised, if your already comprimiesed i would rather turn of or disconnect your exchange server from network and restore it before the attack has startet, update the exchange server with all patches, change all passwords, verify ad accounts etc.