- Quick specs
- Price: Update
- Operating system:
- Date added: January 12, 2004
- Total Downloads: 31
- Downloads last week: 7
- See full specifications
- Average user rating: Be the first to rate this product!
Publisher's description
From Microsoft :A vulnerability exists in the way that Hypertext Transfer Protocol (HTTP) connections are reused when NTLM authentication is used between front-end Exchange 2003 servers providing OWA access and , when running Outlook Web Access (OWA) on Windows 2000 and Windows Server 2003, and when using back-end Exchange 2003 servers that are running Windows Server 2003.
Users who access their mailboxes through an Exchange 2003 front-end server and Outlook Web Access might get connected to another user's mailbox if that other mailbox is (1) hosted on the same back-end mailbox server and (2) if that mailbox has been recently accessed by its owner. Attackers seeking to exploit this vulnerability could not predict which mailbox they might become connected to. The vulnerability causes random and unreliable access to mailboxes and is specifically limited to mailboxes that have recently been accessed through OWA.
More popular Privacy Software downloads
- 5,395 downloads 1. PeerGuardian
- 5,244 downloads 2. KeyScrambler Personal
- 3,122 downloads 3. Webroot Window Washer
- 2,680 downloads 4. Free Internet Eraser
- 2,399 downloads 5. The Unblock Websites Proxy Program
- See all Privacy Software downloads
User reviews
Write your own review Be the first one to review Vulnerability in Exchange Server 2003 Could Lead to Privilege Escalation 1.0 and share your experience with the CNET community!
Previous versions: See all user reviews
Submit your review
- See more CNET content tagged:
- Microsoft Exchange Server 2003,
- Microsoft Outlook Web Access,
- Microsoft Windows Server 2003,
- mailbox,
- vulnerability


