5
CVSSv2

CVE-2002-1790

Published: 31/12/2002 Updated: 09/04/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote malicious users to bypass anti-relaying rules and send spam or spoofed messages via encapsulated SMTP addresses, a similar vulnerability to CVE-1999-0682.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft exchange server 5.5

microsoft internet information server 4.0

microsoft internet information services 5.0

Exploits

source: wwwsecurityfocuscom/bid/5213/info Microsoft Exchange 55 and the SMTP (Simple Mail Transfer Protocol) service included with IIS (Internet Information Services) 40 and 50 are vulnerable to an encapsulated SMTP address vulnerability The vulnerability was originally announced in Microsoft Security Bulletin MS99-027 and reported t ...