Vulnerability Details CVE-2002-1831
Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via an invite request that contains hex-encoded spaces (%20) in the Invitation-Cookie field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.096
EPSS Ranking 92.5%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-1831
-
cpe:2.3:a:microsoft:msn_messenger:1.0
-
cpe:2.3:a:microsoft:msn_messenger:2.0
-
cpe:2.3:a:microsoft:msn_messenger:2.2
-
cpe:2.3:a:microsoft:msn_messenger:3.0
-
cpe:2.3:a:microsoft:msn_messenger:3.6
-
cpe:2.3:a:microsoft:msn_messenger:4.0
-
cpe:2.3:a:microsoft:msn_messenger:4.5
-
cpe:2.3:a:microsoft:msn_messenger:4.6