CVE-2002-1790

The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attackers to bypass anti-relaying rules and send spam or spoofed messages via encapsulated SMTP addresses, a similar vulnerability to CVE-1999-0682.

Scoring

CVSS base score
0.79
EPSS probability
19.73%
Published
2005-06-28
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs