HIGH · 7.5

CVE-2000-0419

The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 U...

Vulnerability Description

The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
MicrosoftAccess2000
MicrosoftExcel2000
MicrosoftFrontpage2000
MicrosoftOffice2000
MicrosoftOutlook2000
MicrosoftPhotodraw 20001.0
MicrosoftPowerpoint2000
MicrosoftProject2000
MicrosoftWord2000
MicrosoftWorks2000

References

FAQ

What is CVE-2000-0419?

CVE-2000-0419 is a vulnerability with a CVSS score of 7.5 (HIGH). The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 U...

How severe is CVE-2000-0419?

CVE-2000-0419 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2000-0419?

Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Access, Microsoft Excel, Microsoft Frontpage, Microsoft Office, Microsoft Outlook.