SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2000-0933

The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State…

MEDIUM 4.6EPSS 2.16%

Does this matter?

Lower severity and a low EPSS score (2.16%). Track it; it rarely justifies an emergency change on its own.

Description

The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State Recognition" vulnerability.

CVSS 2.0
4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.16% probability · 81th percentile
CISA KEV
Not listed
Affected
microsoft/windows 2000
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.