Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2003-0904

Microsoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can cause OWA users to view mailboxes of other users when Kerberos has been disabled as an authentication method for IIS 6.0, e.g. when SharePoint Services 2.0 is installed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.219
EPSS Ranking 95.5%
CVSS Severity
CVSS v2 Score 6.0
References
Products affected by CVE-2003-0904


Contact Us

Shodan ® - All rights reserved