Vulnerability Name: | CVE-2000-0933 (CCN-5301) | ||||||||
Assigned: | 2000-09-29 | ||||||||
Published: | 2000-09-29 | ||||||||
Updated: | 2018-10-12 | ||||||||
Summary: | The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State Recognition" vulnerability. | ||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2000-0933 Source: CCN Type: Microsoft Security Bulletin MS00-069 FAQ Microsoft Security Bulletin (MS00-069): Frequently Asked Questions Source: CCN Type: Microsoft Security Bulletin MS00-069 Patch Available for 'Simplified Chinese IME State Recognition' Vulnerability Source: CCN Type: OSVDB ID: 1578 Microsoft Windows 2000 Simplified Chinese IME Local Privilege Escalation Source: BID Type: Exploit, Patch, Vendor Advisory 1729 Source: CCN Type: BID-1729 Microsoft Windows 2000 Simplified Chinese IME Vulnerability Source: MS Type: UNKNOWN MS00-069 Source: XF Type: UNKNOWN win2k-simplified-chinese-ime(5301) Source: XF Type: UNKNOWN win2k-simplified-chinese-ime(5301) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |