CVE-2000-0301

CVSS 2.0 Score 5.0 of 10 (medium)

Details

Published Apr 6, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0301 is a denial-of-service vulnerability affecting Ipswitch IMAIL servers version 6.02 and earlier. An attacker can trigger the issue by sending a maliciously crafted AUTH CRAM-MD5 command. Upon receipt of this command, the server enters an infinite loop, leading to a resource exhaustion and subsequent denial of service. This vulnerability can be exploited remotely, potentially impacting the availability of email services for affected organizations. It is recommended that administrators update their IMAIL servers to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Ipswitch Imail

Affected Vendors

  • Ipswitch, Inc.