peter bassill · operator
$ cve CVE-2000-1002 JSON

CVE-2000-1002 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 7.5% (pctl 94)

Patch early

A public exploit exists.

Description

POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS7.49% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2000-12-11
Last modified2026-09-23

Affected (1)

VendorProduct
stalkercommunigate pro

Public exploits

SourceTitleDate
exploit-dbPragmaSys TelnetServer 2000 - rexec Buffer Overflow2000-08-24

References

→ the Explorer  ·  watch your stack  ·  NVD