MS00-052: Patch Available for "Relative Shell Path" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in Microsoft® Windows NT® 4.0 and Windows® 2000. Under certain conditions, the vulnerability could enable a malicious user to cause code of his choice to run when another user subsequently logged onto the same machine. http://www.microsoft.com/technet/security/bulletin/MS00-052.asp
MS00-053: Patch Available for "Service Control Manager Named Pipe Impersona Microsoft has released a patch that eliminates a security vulnerability in Microsoft® Windows 2000® The vulnerability could allow a user logged onto a Windows 2000 machine from the keyboard to become an administrator on the machine. http://www.microsoft.com/technet/security/bulletin/MS00-053.asp
MS00-092: Patch Available for "Extended Stored Procedure Parameter Parsing" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in Microsoft® SQL Server and Microsoft SQL Server Desktop Engine (MSDE). The vulnerability could enable a malicious user to run code on the server, subject to a number of restrictions. http://www.microsoft.com/technet/security/bulletin/MS00-092.asp
MS00-094: Patch Available for "Phone Book Service Buffer Overflow" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in an optional service that ships with Microsoft® Windows NT® 4.0 and Windows® 2000 Servers. The vulnerability could allow a malicious user to execute hostile code on a remote server that is running the service. http://www.microsoft.com/technet/security/bulletin/MS00-094.asp
MS00-097: Patch Available for "Severed Windows Media Server Connection" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in Microsoft® Windows Media™ Services. The vulnerability could allow a malicious user to degrade the performance of a Windows Media server, possibly to the point where it could no longer provide useful service. http://www.microsoft.com/technet/security/bulletin/MS00-097.asp
MS00-098: Patch Available for "Indexing Service File Enumeration" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in a component that ships as part of Microsoft® Windows® 2000. The vulnerability could allow a malicious web site operator to learn the names and properties of files and folders on the machine of a visiting user. http://www.microsoft.com/technet/security/bulletin/MS00-098.asp
MS00-099: Patch Available for "Directory Service Restore Mode Password" Vulnerability Microsoft has released a patch that eliminates a security vulnerability affecting Microsoft® Windows® 2000 domain controllers. The vulnerability could allow a malicious user with physical access to a domain controller to install malicious software on it. http://www.microsoft.com/technet/security/bulletin/MS00-099.asp
MS00-100: Patch Available for "Malformed Web Form Submission" Vulnerability Microsoft has released a patch that eliminates a security vulnerability in a component that ships as part of Microsoft® Internet Information Server. The vulnerability could potentially allow an attacker to prevent an affected web server from providing useful service. http://www.microsoft.com/technet/security/bulletin/MS00-100.asp
Unauthorized Access to IIS Servers (J-054) This vulnerability has been used to gain unauthorized access `` to Internet-connected systems. http://www.ciac.org/ciac/bulletins/j-054.shtml