CVE-2000-0709
UnknownEPSS 25.39%
Last modified
CVE-2000-0709 is a vulnerability of currently unknown severity. The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to cause a denial of service in some components by requesting a URL whose name includes a standard DOS device name.. EPSS estimates a 25.39% chance of exploitation in the next 30 days.
Description
The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to cause a denial of service in some components by requesting a URL whose name includes a standard DOS device name.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Frontpage | All versions |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/1608Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/1608Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0709?
The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to cause a denial of service in some components by requesting a URL whose name includes a standard DOS device name.
How severe is CVE-2000-0709?
Severity scoring for CVE-2000-0709 is pending analysis. The EPSS model estimates a 25.39% probability of exploitation in the next 30 days.
How do I fix CVE-2000-0709?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2000
- CVE-2000-0703suidperl (aka sperl) does not properly cleanse the escape se…
- CVE-2000-0704Buffer overflow in SGI Omron WorldView Wnn allows remote att…
- CVE-2000-0705ntop running in web mode allows remote attackers to read arb…
- CVE-2000-0706Buffer overflows in ntop running in web mode allows remote a…
- CVE-2000-0707PCCS MySQLDatabase Admin Tool Manager 1.2.4 and earlier inst…
- CVE-2000-0708Buffer overflow in Pragma Systems TelnetServer 2000 version …
- CVE-2000-0710The shtml.exe component of Microsoft FrontPage 2000 Server E…
- CVE-2000-0711Netscape Communicator does not properly prevent a ServerSock…
- CVE-2000-0712Linux Intrusion Detection System (LIDS) 0.9.7 allows local u…
- CVE-2000-0713Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tool…
- CVE-2000-0714umb-scheme 3.2-11 for Red Hat Linux is installed with world-…
- CVE-2000-0715DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows lo…
Are you affected by CVE-2000-0709?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
