Vulnerabilities > CVE-2000-1006 - Unspecified vulnerability in Microsoft Exchange Server 5.5
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset="" command, aka the "Malformed MIME Header" vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | SMTP problems |
NASL id | EXCHANGE_DOS.NASL |
description | The remote Exchange server seems to be vulnerable to a flaw that lets malformed MIME headers crash it. *** Nessus did not actually test for these flaws - it just relied *** on the banner to identify them. Therefore, this warning may be *** a false positive - especially since the banner DOES NOT CHANGE *** if the patch has been applied. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10558 |
published | 2000-11-27 |
reporter | This script is Copyright (C) 2000-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10558 |
title | Exchange Malformed MIME Header Handling DoS |
code |
|