CNCVE编号:CNCVE-20010340 CVE编号:CVE-2001-0340 安全级别:高 漏洞中文描述: 在Microsoft Exchange 2000 服务器的Outlook Web Access (OWA)服务与Internet Explorer之间的交互,使得攻击者可以通过附加包含可以自动执行的HTML代码的信息对一个用户的邮箱执行恶意脚本代码。 漏洞英文描述: An interaction between the Outlook Web Access (OWA) service in Microsoft Exchange 2000 Server and Internet Explorer allows attackers to execute malicious script code against a user's mailbox via a message attachment that contains HTML code, which is executed automatically。 漏洞参考: MS:MS01-030 URL:http://www.microsoft.com/technet/security/bulletin/MS01-030.asp 系统类型: Win2000/NT 漏洞类型:环境错误