VulnerabilityModified
CVE-2001-0504
Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.
HIGH 7.5EPSS 21.1%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 21.1%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 21.11% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows 2000
- Source
- cve@mitre.org
References
- http://www.ciac.org/ciac/bulletins/l-107.shtml
- http://www.kb.cert.org/vuls/id/435963US Government Resource
- http://www.securityfocus.com/bid/2988
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-037
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6803
- http://www.ciac.org/ciac/bulletins/l-107.shtml
- http://www.kb.cert.org/vuls/id/435963US Government Resource
- http://www.securityfocus.com/bid/2988
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-037
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6803
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.