CVE-2000-0419
 
Severity Score
7.5
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2000-05-11 CVE Published
- 2000-06-14 CVE Reserved
- 2024-02-08 EPSS Updated
- 2024-08-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.cert.org/advisories/CA-2000-07.html | Third Party Advisory | |
http://www.securityfocus.com/bid/1197 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.microsoft.com/technet/support/kb.asp?ID=262767 | 2018-10-12 | |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-034 | 2018-10-12 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microsoft Search vendor "Microsoft" | Access Search vendor "Microsoft" for product "Access" | 2000 Search vendor "Microsoft" for product "Access" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Excel Search vendor "Microsoft" for product "Excel" | 2000 Search vendor "Microsoft" for product "Excel" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Frontpage Search vendor "Microsoft" for product "Frontpage" | 2000 Search vendor "Microsoft" for product "Frontpage" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Office Search vendor "Microsoft" for product "Office" | 2000 Search vendor "Microsoft" for product "Office" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Outlook Search vendor "Microsoft" for product "Outlook" | 2000 Search vendor "Microsoft" for product "Outlook" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Photodraw 2000 Search vendor "Microsoft" for product "Photodraw 2000" | 1.0 Search vendor "Microsoft" for product "Photodraw 2000" and version "1.0" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Powerpoint Search vendor "Microsoft" for product "Powerpoint" | 2000 Search vendor "Microsoft" for product "Powerpoint" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Project Search vendor "Microsoft" for product "Project" | 2000 Search vendor "Microsoft" for product "Project" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Word Search vendor "Microsoft" for product "Word" | 2000 Search vendor "Microsoft" for product "Word" and version "2000" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Works Search vendor "Microsoft" for product "Works" | 2000 Search vendor "Microsoft" for product "Works" and version "2000" | - |
Affected
|