PT-2000-1916 · Microsoft · Exchange Server

Publicado

2000-12-11

·

Atualizado

2020-04-09

·

CVE-2000-1006

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Exchange Server version 5.5
Description The issue arises from improper handling of a MIME header with a blank charset specified, allowing remote attackers to cause a denial of service via a charset="" command.
Recommendations For Microsoft Exchange Server version 5.5, consider restricting access to prevent remote attackers from exploiting the issue until a proper fix is applied. As a temporary workaround, avoid using blank charsets in MIME headers to minimize the risk of denial of service attacks.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-1006

Produtos afetados

Exchange Server