CVE-2000-0592 describes buffer overflow vulnerabilities in the POP3 service of SapporoWorks WinProxy versions 2.0 and 2.0.1. Remote attackers can exploit these flaws by sending excessively long USER, PASS, LIST, RETR, or DELE commands, potentially leading to arbitrary command execution on the affected system. This vulnerability carries a high CVSS score of 7.5, indicating a severe risk. It is easily exploitable over the network with low attack complexity and no authentication required, allowing for potential compromise of confidentiality, integrity, and availability. While not listed on the KEV catalog or having active Metasploit/Nuclei modules, an exploit for this vulnerability is publicly available on ExploitDB. There is no evidence of widespread community discussion or media coverage, which is typical for many older CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.0CPE matchmatch criteria | cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0:*:*:*:*:*:*:* | ||
2.0.1CPE matchmatch criteria | cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.