CVE-2001-0509Improper Input Validation in Microsoft Exchange Server

Severity
5.0MEDIUMNVD
EPSS
13.0%
top 5.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 20
Latest updateApr 30

Description

Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDmicrosoft/exchange_server2000, 5.0, 5.5+2
NVDmicrosoft/sql_server2000, 7.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-h45q-cxr9-cw4p: Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 42022-04-30
CVEList
CVE-2001-0509: Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 42001-08-29
CVE-2001-0509 — Improper Input Validation in Microsoft | cvebase