5

CVE-2000-0960

Exploit
The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netscape ≫ Messaging Server Version 4.15
Netscape ≫ Messaging Server Version 4.15 Update patch1
Netscape ≫ Messaging Server Version 4.15 Update patch2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.7% 0.742
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=97138100426121&w=2
http://www.securityfocus.com/bid/1787
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/5364