Skip to main content

CVE-2000-1209

CVSS Score Not Available
88.44%
HIGH RiskEPSS (100th percentile)

The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3) Data Engine (MSDE) 1.0, including third party packages that use these products such as (4) Tumbleweed Secure Mail (MMS) (5) Compaq Insight Manager, and (6) Visio 2000, which allows remote attackers to gain privileges, as exploited by worms such as Voyager Alpha Force and Spida.

Published: 8/12/2002
Modified: 4/3/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

88.44%HIGH Exploitation Risk
100th percentile

This vulnerability has a 88.44% probability of being exploited in the next 30 days, ranking higher than 100% of all scored CVEs.