CVE-2003-0110
The Winsock Proxy service in Microsoft Proxy Server 2.0 and the Microsoft Firewall service in Internet Security and Acceleration (ISA) Server 2000 allow remote attackers to cause a denial of service (CPU consumption or packet storm) via a spoofed,…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 18.0%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
The Winsock Proxy service in Microsoft Proxy Server 2.0 and the Microsoft Firewall service in Internet Security and Acceleration (ISA) Server 2000 allow remote attackers to cause a denial of service (CPU consumption or packet storm) via a spoofed, malformed packet to UDP port 1745.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 17.97% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/isa server · microsoft/proxy server
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=104994487012027&w=2
- http://www.idefense.com/advisory/04.09.03.txtPatch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-012
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A406
- http://marc.info/?l=bugtraq&m=104994487012027&w=2
- http://www.idefense.com/advisory/04.09.03.txtPatch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-012
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A406
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.