CVE-2000-0419
Microsoft Office 2000 - Remote Code Execution via UA ActiveX Control
Title source: llmDescription
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
References (4)
Core 4
Core References
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-034
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/1197
Vendor Advisory vendor-advisory
x_refsource_mskb
http://www.microsoft.com/technet/support/kb.asp?ID=262767
US Government Resource third-party-advisory
x_refsource_cert
http://www.cert.org/advisories/CA-2000-07.html
Scores
EPSS
0.2100
EPSS Percentile
97.3%
Details
Status
published
Products (10)
microsoft/access
2000
microsoft/excel
2000
microsoft/frontpage
2000
microsoft/office
2000
microsoft/outlook
2000
microsoft/photodraw_2000
1.0
microsoft/powerpoint
2000
microsoft/project
2000
microsoft/word
2000
microsoft/works
2000
Published
May 11, 2000
Tracked Since
Feb 18, 2026