Back

CVE-2000-0834

The Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows remote attackers to capture and replay the NTLM challenge/response via a telnet:// URL that points to the malicious server, aka the "Windows 2000 Telnet Client NTLM Authentication" vulnerability.

Published: Nov 14, 2000 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
microsoft windows_2000 *

GitHub Security Advisory GHSA-4m4v-vqhc-mhjp

The Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 34.05%

Top 3% most likely to be exploited

Threat Score 40.2 / 100

Data Sources

NVD EPSS GitHub