Microsoft

Exchange Server

220 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 9.99%
  • Published 11.12.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset="" command, aka the "Malformed MIME Header" vulnerability.

  • EPSS 15.51%
  • Published 05.06.2000 04:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From.

  • EPSS 13.02%
  • Published 29.02.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirec...

  • EPSS 6.49%
  • Published 31.12.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, which allows remote attackers to cause a denial of service (application error).

  • EPSS 8.67%
  • Published 13.12.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.

  • EPSS 18.36%
  • Published 06.08.1999 04:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled.

  • EPSS 9%
  • Published 01.12.1998 05:00:00
  • Last modified 03.04.2025 01:03:51

The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.

  • EPSS 0.81%
  • Published 12.11.1998 05:00:00
  • Last modified 03.04.2025 01:03:51

The installation of 1ArcServe Backup and Inoculan AV client modules for Exchange create a log file, exchverify.log, which contains usernames and passwords in plaintext.

  • EPSS 5.12%
  • Published 26.06.1998 04:00:00
  • Last modified 03.04.2025 01:03:51

Information from SSL-encrypted sessions via PKCS #1.

  • EPSS 3.44%
  • Published 01.01.1998 05:00:00
  • Last modified 03.04.2025 01:03:51

Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.