The patch relates to a vulnerability in CDO. This vulnerability apparently does not exist in Exchange 2003 but also appears in the all the other supported Microsoft products that run IIS, including Windows 2003 SP1.
To install the patch on Exchange 2000 you would need SP3 and the post-SP3 rollup fix installed.
For more information:
http://www.microsoft.com/technet/security/Bulletin/MS05-048.mspx
About Amit Zinman
Currently working as Project Manager and Systems Consultant, heading and consulting on Exchange and NT/Windows 2000 based migrations and deployments for large companies such as Checkpoint, Comverse, Smarteam, Nice, Aladdin and leading Israeli Banks, Also involved in writing scripts and custom solutions for clients based on ADSI, CDO and Visual Basic and teaching Windows 2000 and Exchange 2000 in MSCE colleges and lecturing in Microsoft User Groups.
Click here for Amit Zinman's section.
Receive all the latest articles by email!
Get all articles delivered directly to your mailbox as and when they are released on MSExchange.org! Choose between receiving instant updates with the Real-Time Article Update, or a monthly summary with the Monthly Article Update. Sign up to the MSExchange.org Monthly Newsletter, written by Exchange MVP Henrik Walther, containing news, the hottest tips, Exchange links of the month and much more. Subscribe today and don't miss a thing!