CVE-2002-0368
Last modified
CVE-2002-0368 is a vulnerability of currently unknown severity. The Store Service in Microsoft Exchange 2000 allows remote attackers to cause a denial of service (CPU consumption) via a mail message with a malformed RFC message attribute, aka "Malformed Mail Attribute can Cause Exchange 2000 to Exhaust CPU Resources.". EPSS estimates a 15.24% chance of exploitation in the next 30 days.
Description
The Store Service in Microsoft Exchange 2000 allows remote attackers to cause a denial of service (CPU consumption) via a mail message with a malformed RFC message attribute, aka "Malformed Mail Attribute can Cause Exchange 2000 to Exhaust CPU Resources."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Exchange Server | 2000 |
References
- http://www.securityfocus.com/bid/4881Third Party Advisory, VDB Entry
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-025Patch, Vendor Advisory
- http://www.securityfocus.com/bid/4881Third Party Advisory, VDB Entry
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-025Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-0368?
How severe is CVE-2002-0368?
How do I fix CVE-2002-0368?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-0360Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows …
- CVE-2002-0362Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later…
- CVE-2002-0363ghostscript before 6.53 allows attackers to execute arbitrar…
- CVE-2002-0364Buffer overflow in the chunked encoding transfer mechanism i…
- CVE-2002-0366Buffer overflow in Remote Access Service (RAS) phonebook for…
- CVE-2002-0367smss.exe debugging subsystem in Windows NT and Windows 2000 …7.8
- CVE-2002-0369Buffer overflow in ASP.NET Worker Process allows remote atta…
- CVE-2002-0370Buffer overflow in the ZIP capability for multiple products …
- CVE-2002-0371Buffer overflow in gopher client for Microsoft Internet Expl…
- CVE-2002-0372Microsoft Windows Media Player versions 6.4 and 7.1 and Medi…
- CVE-2002-0373The Windows Media Device Manager (WMDM) Service in Microsoft…
- CVE-2002-0374Format string vulnerability in the logging function for the …
Are you affected by CVE-2002-0368?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
