Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-0420

EPSS 74.71% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-0420

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the owalogon.asp application.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Outlook Web Access 输入验证错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Outlook Web Access简称OWA是基于微软Hosted Exchange技术的托管邮局的一项Web访问功能。通过访问Outlook Web Access页面,邮箱用户不需要安装Outlook2007客户端软件,直接使用 Web 浏览器通过 Internet 读取或发送电子邮件、管理他们的日历地址簿,任务等协同办公功能。 Microsoft Outlook Web Access (OWA)在和Exchange一起使用时,远程攻击者可以通过指向owalogon.asp应有程序的链接来重定向用户到
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-0420

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0420

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-02-15 · 35 CVEs total

CVE-2005-0440ELOG Web Logbook 信息泄露漏洞
CVE-2005-0432BEA WebLogic Server 信任管理漏洞
CVE-2005-0433PHP-Nuke 多文件参数 路径信息泄露漏洞
CVE-2005-0434PHP-Nuke 多文件参数跨站脚本攻击漏洞
CVE-2005-0435AWStats awstats.pl 信息泄露漏洞
CVE-2005-0436AWStats 代码注入漏洞
CVE-2005-0437AWStats awstats.pl目录遍历漏洞
CVE-2005-0438AWStats漏洞
CVE-2005-0439ELOG Web Logbook多个远程漏洞
CVE-2005-0431Barracuda Spam Firewall漏洞
CVE-2005-0441Sybase Adaptive Server Enterprise (ASE)缓冲区溢出漏洞
CVE-2005-0442Brooky CubeCart多个漏洞
CVE-2005-0443Brooky CubeCart漏洞
CVE-2005-0444Vmware rrdharan 临时目录本地溢出漏洞
CVE-2005-0445Open WebMail Logindomain 参数跨站脚本漏洞
CVE-2005-0446Squid Proxy DNS Name Resolver远程拒绝服务漏洞
CVE-2005-0447Sun Solaris ARP处理远程拒绝服务漏洞
CVE-2005-0422DelphiTurk CodeBank 注册键权限提升漏洞
CVE-2004-1488GNU wget执行任意代码漏洞
CVE-2005-0019hztty本地执行任意命令漏洞

Showing top 20 of 35 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-0420

No comments yet


Leave a comment