Home/Product/microsoft windows 2000 terminal services
Product

microsoft windows 2000 terminal services

24 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2005-1214
all versions
Microsoft Agent allows remote attackers to spoof trusted Internet content and execute arbitrary code by disguising security prompt
CVE-2005-1212
all versions
Buffer overflow in Microsoft Step-by-Step Interactive Training (orun32.exe) allows remote attackers to execute arbitrary code via
CVE-2003-0496
all versions
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the xp_fileex
CVE-2003-0112
all versions
Buffer overflow in Windows Kernel allows local users to gain privileges by causing certain error messages to be passed to a debugg
CVE-2003-0111
all versions
The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Expl
CVE-2002-1561
all versions
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (disabled R
CVE-2003-0109
all versions
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP all
CVE-2003-0010
all versions
Integer overflow in JsArrayFunctionHeapSort function used by Windows Script Engine for JScript (JScript.dll) on various Windows op
CVE-2003-0003
all versions
Buffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and
CVE-2003-0001
all versions
Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to
CVE-2002-1933
all versions
The terminal services screensaver for Microsoft Windows 2000 does not automatically lock the terminal window if the window is mini
CVE-2002-1325
all versions
Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java
CVE-2002-1260
all versions
The Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass
CVE-2002-1258
all versions
Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other a
CVE-2002-1257
all versions
Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a
CVE-2002-1256
all versions
The SMB signing capability in the Server Message Block (SMB) protocol in Microsoft Windows 2000 and Windows XP allows attackers to
CVE-2002-1230
all versions
NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary
CVE-2002-1214
all versions
Buffer overflow in Microsoft PPTP Service on Windows XP and Windows 2000 allows remote attackers to cause a denial of service (han
CVE-2002-0864
all versions
The Remote Data Protocol (RDP) version 5.1 in Microsoft Windows XP allows remote attackers to cause a denial of service (crash) wh
CVE-2002-0863
all versions
Remote Data Protocol (RDP) version 5.0 in Microsoft Windows 2000 and RDP 5.1 in Windows XP does not encrypt the checksums of plain
CVE-2002-0694
all versions
The HTML Help facility in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Win
CVE-2002-0693
all versions
Buffer overflow in the HTML Help ActiveX Control (hhctrl.ocx) in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4
CVE-2002-0720
all versions
A handler routine for the Network Connection Manager (NCM) in Windows 2000 allows local users to gain privileges via a complex att
CVE-2002-0444
all versions
Microsoft Windows 2000 running the Terminal Server 90-day trial version, and possibly other versions, does not apply group policie
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin