CVE-2002-1831
Microsoft MSN Messenger 1.0-4.6 - Denial of Service via Hex-Encoded Spaces in Invitation-Cookie
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1831. PoCs published by Beck Mr.R.
AI-analyzed exploit summary This exploit demonstrates a DoS vulnerability in MSN Messenger by sending a malformed invite request with excessive HTML-encoded space characters (%20) in the Invitation-Cookie field, causing the client to crash.
Description
Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via an invite request that contains hex-encoded spaces (%20) in the Invitation-Cookie field.
Exploits (1)
This exploit demonstrates a DoS vulnerability in MSN Messenger by sending a malformed invite request with excessive HTML-encoded space characters (%20) in the Invitation-Cookie field, causing the client to crash.