CVE-2000-0109
UnknownEPSS 8.42%
Last modified
CVE-2000-0109 is a vulnerability of currently unknown severity. The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords.. EPSS estimates a 8.42% chance of exploitation in the next 30 days.
Description
The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Comstock | Multicsp | 4.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0109?
The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords.
How severe is CVE-2000-0109?
Severity scoring for CVE-2000-0109 is pending analysis. The EPSS model estimates a 8.42% probability of exploitation in the next 30 days.
How do I fix CVE-2000-0109?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2000
- CVE-2000-0103The SmartCart shopping cart application allows remote users …
- CVE-2000-0104The Shoptron shopping cart application allows remote users t…
- CVE-2000-0105Outlook Express 5.01 and Internet Explorer 5.01 allow remote…
- CVE-2000-0106The EasyCart shopping cart application allows remote users t…
- CVE-2000-0107Linux apcd program allows local attackers to modify arbitrar…
- CVE-2000-0108The Intellivend shopping cart application allows remote user…
- CVE-2000-0110The WebSiteTool shopping cart application allows remote user…
- CVE-2000-0111The RightFax web client uses predictable session numbers, wh…
- CVE-2000-0112The default installation of Debian GNU/Linux uses an insecur…
- CVE-2000-0113The SyGate Remote Management program does not properly restr…
- CVE-2000-0114Frontpage Server Extensions allows remote attackers to deter…
- CVE-2000-0115IIS allows local users to cause a denial of service via inva…
Are you affected by CVE-2000-0109?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
