First published: Tue Dec 19 2000(Updated: )
File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 98SE | ||
Microsoft Windows 95 | ||
Microsoft Windows Me | ||
Microsoft Windows 98 | =gold |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0979 is rated as a medium severity vulnerability.
To fix CVE-2000-0979, consider disabling the File and Print Sharing feature or upgrade to a patched version of Windows.
CVE-2000-0979 affects Microsoft Windows 95, Windows 98, Windows 98SE, and Windows Me.
CVE-2000-0979 can be exploited by remote attackers to bypass access controls on shared files.
While CVE-2000-0979 primarily affects outdated and unsupported operating systems, it remains a risk if those systems are still in use.