peter bassill · operator
$ cve CVE-2000-1089 JSON

CVE-2000-1089 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 74.6% (pctl 99)

Patch early

A public exploit exists.

Description

Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Service Buffer Overflow" vulnerability.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS74.64% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2001-01-09
Last modified2026-06-16

Affected (2)

VendorProduct
microsoftwindows 2000
microsoftwindows nt

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD