← All CVEs

CVE-2002-1831

medium · 5

Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via an invite request that contains hex-encoded spaces (%20) in the Invitation-Cookie field.

5
CVSS
22.3%
EPSS (exploit prob.)
98th
EPSS percentile
2002-12-31
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
microsoftmsn_messenger1.0
microsoftmsn_messenger2.0
microsoftmsn_messenger2.2
microsoftmsn_messenger3.0
microsoftmsn_messenger3.6
microsoftmsn_messenger4.0
microsoftmsn_messenger4.5
microsoftmsn_messenger4.6

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2002-1831