Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wpp8-hx5r-4jfx

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Microsoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can cause OWA users to view mailboxes of other users when Kerberos has been disabled as an authentication method for IIS 6.0, e.g. when SharePoint Services 2.0 is installed.

Microsoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can cause OWA users to view mailboxes of other users when Kerberos has been disabled as an authentication method for IIS 6.0, e.g. when SharePoint Services 2.0 is installed.

EPSS

Процентиль: 94%
0.14163
Средний

Дефекты

CWE-200

Связанные уязвимости

nvd
около 22 лет назад

Microsoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can cause OWA users to view mailboxes of other users when Kerberos has been disabled as an authentication method for IIS 6.0, e.g. when SharePoint Services 2.0 is installed.

EPSS

Процентиль: 94%
0.14163
Средний

Дефекты

CWE-200