CVE-2000-0979
Last modified
CVE-2000-0979 is a vulnerability of currently unknown severity. File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.. EPSS estimates a 45.63% chance of exploitation in the next 30 days.
Description
File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows 95 | All versions | — |
| Microsoft | Windows 98 | All versions | Gold |
| Microsoft | Windows 98se | All versions | — |
| Microsoft | Windows Me | All versions | — |
References
- http://www.securityfocus.com/bid/1780Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/1780Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0979?
How severe is CVE-2000-0979?
How do I fix CVE-2000-0979?
Are you affected by CVE-2000-0979?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
