CVE-2000-0834
The Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows remote attackers to capture and replay the NTLM challenge/response via a telnet:// URL that points to the malicious server, aka the "Windows 2000 Telnet Client NTLM Authentication" vulnerability.
- Affected products
- Windows 2000
- Microsoft Windows 2000
- All versions
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 39.6% (99th percentile)
- NVD status
- Modified
- Published
- 2001-01-22
CVE-2000-0834 at NVD
1 known exploit for CVE-2000-0834
Proof-of-concept code and exploit modules indexed by Sploitus