- EPSS 9.99%
- Veröffentlicht 11.12.2000 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset="" command, aka the "Malformed MIME Header" vulnerability.
- EPSS 15.51%
- Veröffentlicht 05.06.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From.
- EPSS 13.02%
- Veröffentlicht 29.02.2000 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirec...
- EPSS 6.49%
- Veröffentlicht 31.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, which allows remote attackers to cause a denial of service (application error).
CVE-1999-0993
- EPSS 8.67%
- Veröffentlicht 13.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.
- EPSS 18.36%
- Veröffentlicht 06.08.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled.
- EPSS 9%
- Veröffentlicht 01.12.1998 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.
CVE-1999-1322
- EPSS 0.81%
- Veröffentlicht 12.11.1998 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The installation of 1ArcServe Backup and Inoculan AV client modules for Exchange create a log file, exchverify.log, which contains usernames and passwords in plaintext.
- EPSS 5.12%
- Veröffentlicht 26.06.1998 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Information from SSL-encrypted sessions via PKCS #1.
CVE-1999-0284
- EPSS 3.44%
- Veröffentlicht 01.01.1998 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.