PT-2002-1147 · Microsoft · Windows 2000+3

Published

2002-03-08

·

Updated

2020-04-09

·

CVE-2002-0055

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to the fixed version Exchange 2000
Description The issue concerns a denial of service that can be caused by a remote attacker through the SMTP service. This is achieved by sending a command with a malformed data transfer (BDAT) request.
Recommendations For Microsoft Windows 2000 and Windows XP Professional, update to a version that includes the fix for this issue. For Exchange 2000, apply the recommended configuration changes to prevent exploitation. As a temporary workaround, consider restricting access to the SMTP service until a patch is available.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2002-0055

Affected Products

Exchange 2000
Windows
Windows 2000
Windows Xp Professional