CVE-2000-1139: High severity Microsoft Exchange Server vulnerability
Published Jan 9, 2001
·Updated
The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privileges, aka the "Exchange User Account" vulnerability.
Affected Software
1 affected component
Microsoft Exchange Server=2000
Remediation
Patch Available
Event History
Jan 9, 2001
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1139?
CVE-2000-1139 is considered critical due to the potential for unauthorized access to Microsoft Exchange 2000 systems.
2
How do I fix CVE-2000-1139?
To fix CVE-2000-1139, install the latest security patch provided by Microsoft for Exchange 2000.
3
What systems are affected by CVE-2000-1139?
CVE-2000-1139 specifically affects Microsoft Exchange Server 2000 installations prior to Rev. A.
4
What kind of attack can exploit CVE-2000-1139?
CVE-2000-1139 can be exploited by attackers to gain elevated privileges through a known user account.
5
Is there a workaround for CVE-2000-1139?
Disabling the default user account or changing its password can serve as a temporary workaround for CVE-2000-1139.