← Vulnerability feed

Vulnerability record · CVE-2000-0849 · published 14 November 2000

CVE-2000-0849: Microsoft windows media services vulnerability

Microsoft · Windows Media Services

Race condition in Microsoft Windows Media server allows remote attackers to cause a denial of service in the Windows Media Unicast Service via a malformed request, aka the "Unicast Service Race Condition" vulnerability.

2.6 CVSS 2.0 Low EPSS 15% · top 3.4%
2.6CVSS 2.0 base score
15%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

Race condition in Microsoft Windows Media server allows remote attackers to cause a denial of service in the Windows Media Unicast Service via a malformed request, aka the "Unicast Service Race Condition" vulnerability.

AV:N/AC:H/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2000-0849 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2008-3009Microsoft windows media player vulnerabilityMicrosoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the …EPSS 16%9.3CVE-2009-2498Microsoft windows media format runtime code injection vulnerabilityMicrosoft Windows Media Format Runtime 9.0, 9.5, and 11 and Windows Media Services 9.1 and 2008 do not properly parse malformed headers in Advanced S…EPSS 21%9.3CVE-2007-0064Microsoft windows media format runtime memory buffer overflow vulnerabilityHeap-based buffer overflow in Windows Media Format Runtime 7.1, 9, 9.5, 9.5 x64 Edition, 11, and Windows Media Services 9.1 for Microsoft Windows 200…EPSS 36%8.5CVE-2009-2499Microsoft windows media format runtime code injection vulnerabilityMicrosoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows r…EPSS 16%5.0CVE-2003-0905Microsoft windows media services vulnerabilityUnknown vulnerability in Windows Media Station Service and Windows Media Monitor Service components of Windows Media Services 4.1 allows remote attac…EPSS 26%5.0CVE-2001-0083Microsoft windows media services vulnerabilityWindows Media Unicast Service in Windows Media Services 4.0 and 4.1 does not properly shut down some types of connections, producing a memory leak th…EPSS 17%5.0CVE-2000-0495Microsoft windows media services vulnerabilityMicrosoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encode…EPSS 32%5.0CVE-2000-0211Microsoft windows media services vulnerabilityThe Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets that are sent in an improper s…EPSS 21%

Source: NIST National Vulnerability Database (record CVE-2000-0849), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.