Back
CVE-2001-0347
Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote attackers to determine the existence of user accounts such as Guest, or log in to the server without specifying the domain name, via a malformed userid.
Published: Jul 21, 2001
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| microsoft | windows_2000 | * |
GitHub Security Advisory GHSA-4ccp-g444-f9q7
Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote...
References (10)
- http://www.ciac.org/ciac/bulletins/l-092.shtml
- http://www.osvdb.org/5686
- http://www.securityfocus.com/bid/2847
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-031
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6665
- http://www.ciac.org/ciac/bulletins/l-092.shtml
- http://www.osvdb.org/5686
- http://www.securityfocus.com/bid/2847
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-031
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6665
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
13.76%
Top 4% most likely to be exploited
Threat Score
34.1 / 100
Data Sources
NVD
EPSS
GitHub