CVE-2000-0419

3 documents3 sources
Severity
7.5HIGH
EPSS
10.9%
top 6.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 11
Latest updateApr 30

Description

The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages10 packages

🔴Vulnerability Details

2
GHSA
GHSA-g5jc-xm45-6763: The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show M2022-04-30
CVEList
CVE-2000-0419: The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show M2000-07-12
CVE-2000-0419 (HIGH CVSS 7.5) | The Office 2000 UA ActiveX Control | cvebase.io