peter bassill · operator
$ cve CVE-2000-0979 JSON

CVE-2000-0979 EXPLOIT

6.4
MEDIUM · CVSS 2.0 · EPSS 45% (pctl 99)

Patch early

A public exploit exists.

Description

File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.

Scoring

CVSS6.4 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
EPSS44.99% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2000-12-19
Last modified2026-09-23

Affected (4)

VendorProduct
microsoftwindows 95
microsoftwindows 98
microsoftwindows 98se
microsoftwindows me

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD