CVE-2000-1002 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 7.5% (pctl 94)
Patch early
A public exploit exists.
Description
POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 7.49% — more likely to be exploited than 94% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-12-11 |
| Last modified | 2026-09-23 |
Affected (1)
| Vendor | Product |
|---|---|
| stalker | communigate pro |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | PragmaSys TelnetServer 2000 - rexec Buffer Overflow | 2000-08-24 |
References
→ the Explorer · watch your stack · NVD