First published: Tue Oct 30 2001(Updated: )
Outlook Web Access (OWA) in Microsoft Exchange 2000 allows an authenticated user to cause a denial of service (CPU consumption) via a malformed OWA request for a deeply nested folder within the user's mailbox.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Exchange Server | =2000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0666 is classified as a denial of service vulnerability.
CVE-2001-0666 allows an authenticated user to cause high CPU consumption, leading to denial of service.
CVE-2001-0666 affects Microsoft Exchange Server 2000.
CVE-2001-0666 is triggered by a malformed request for a deeply nested folder within a user's mailbox.
Administrators can mitigate CVE-2001-0666 by applying available patches and limiting access to nested folders.