CNCVE编号:CNCVE-20020023 CVE编号:CAN-2002-0054 安全级别:中 漏洞中文描述: Windows系统的IIS服务器自带了一个SMTP服务器组件。Windows 2000 SMTP服务和Exchange Server 5.6 Internet Mail Connector服务对发信认证的实现上存在漏洞,可以使本地局域网攻击者得到主机的用户级非法访问权限。IIS的SMTP组件支持SMTP AUTH认证命令,它支持NTLM认证选项,目的是允许用户用NTLM认证方式认证自己。然而NTLM支持空会话方式,一个匿名用户可能用这种方式“认证”自己,当这种认证完成以后,用户就被准许转发邮件了。Exchange 2000被证实不受此漏洞影响。 漏洞英文描述: A vulnerability has been reported in the Microsoft Windows 2000 SMTP service and Microsoft Exchange Server 5.5 Internet Mail Connector service. This issue may allow an attacker to gain unauthorized user-level access to the SMTP service on a vulnerable host. The consequences of this issue are that an attacker may potentially exploit this vulnerability to turn the server into a mail relay. Systems running Microsoft Exchange 2000 are not prone to this issue. 漏洞参考: http://archives.neohapsis.com/archives/bugtraq/2002-02/0372.html 系统类型: Win2000/NT 漏洞类型:设计错误