VYPR
Unrated severityNVD Advisory· Published Jan 10, 2000· Updated Apr 16, 2026

CVE-2000-0081

CVE-2000-0081

Description

Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. jAvascript.

Affected products

2
  • Microsoft/Hotmail2 versions
    cpe:2.3:a:microsoft:hotmail:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:hotmail:*:*:*:*:*:*:*:*
    • (no CPE)

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.