CVE-2000-0139

Internet Anywhere Mail Server - Denial of Service via Malformed RETR Command

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-0139. PoCs published by Nobuo Miwa.

AI-analyzed exploit summary This exploit demonstrates a denial-of-service (DoS) vulnerability in Internet Anywhere Mail Server by sending a RETR command with an overly long message ID, causing an access violation crash. The attack requires valid POP3 credentials and targets version 3.1.3. Build: 1065.

Description

Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nobuo Miwa · textdoswindows
https://www.exploit-db.com/exploits/19748

This exploit demonstrates a denial-of-service (DoS) vulnerability in Internet Anywhere Mail Server by sending a RETR command with an overly long message ID, causing an access violation crash. The attack requires valid POP3 credentials and targets version 3.1.3. Build: 1065.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Internet Anywhere Mail Server Version:3.1.3. Build: 1065
Auth required
Prerequisites: Valid POP3 username and password · Network access to the target POP3 server (port 110)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=95021326417936&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/982

Scores

EPSS 0.0059
EPSS Percentile 43.8%

Details

Status published
Products (1)
true_north/internet_anywhere_mail_server 3.1.3
Published Dec 03, 1999
Tracked Since Feb 18, 2026