Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2001-0509


Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.


Published

2001-09-20T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 5.0 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application microsoft exchange_server 5.0 Yes
Application microsoft exchange_server 5.5 Yes
Application microsoft exchange_server 2000 Yes
Application microsoft sql_server 7.0 Yes
Application microsoft sql_server 2000 Yes
Application microsoft windows_nt 4.0 Yes
Operating System microsoft windows_2000 - Yes
Operating System microsoft windows_2000 * Yes
Operating System microsoft windows_nt 4.0 Yes

References