CVE-2000-1218
9.8
CRITICAL · CVSS 3.1 · EPSS 6.3% (pctl 93)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 6.26% — more likely to be exploited than 93% of all CVEs |
| Weakness | CWE-346 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2000-04-14 |
| Last modified | 2026-06-16 |
Affected (5)
| Vendor | Product |
|---|---|
| microsoft | windows 2000 |
| microsoft | windows 98 |
| microsoft | windows 98se |
| microsoft | windows nt |
| microsoft | windows xp |
References
→ the Explorer · watch your stack · NVD