← Vulnerability feed

Vulnerability record · CVE-2002-0444 · published 26 July 2002

CVE-2002-0444: Microsoft windows 2000 terminal services vulnerability

Microsoft · Windows 2000 Terminal Services

Microsoft Windows 2000 running the Terminal Server 90-day trial version, and possibly other versions, does not apply group policies to incoming users when the number of connections to the SYSVOL share exceeds the maximum, e.g. with a maximum number of licenses, which can allow remote authenticated users to bypass group policies.

7.5 CVSS 2.0 High EPSS 12% · top 4.0%
7.5CVSS 2.0 base score
12%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

Microsoft Windows 2000 running the Terminal Server 90-day trial version, and possibly other versions, does not apply group policies to incoming users when the number of connections to the SYSVOL share exceeds the maximum, e.g. with a maximum number of licenses, which can allow remote authenticated users to bypass group policies.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0444 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2002-1257Microsoft windows 2000 vulnerabilityMicrosoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that i…EPSS 15%7.5CVE-2005-1212Microsoft windows 2000 vulnerabilityBuffer overflow in Microsoft Step-by-Step Interactive Training (orun32.exe) allows remote attackers to execute arbitrary code via a bookmark link fil…EPSS 25%7.5CVE-2003-0111Microsoft virtual machine vulnerabilityThe ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote…EPSS 37%7.5CVE-2003-0109Windows ntdll.dll buffer overflow via WebDAV requestA buffer overflow in ntdll.dll affects Windows NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP, and can be triggered remotely th…EPSS 86%analysed7.5CVE-2003-0010Microsoft windows 2000 vulnerabilityInteger overflow in JsArrayFunctionHeapSort function used by Windows Script Engine for JScript (JScript.dll) on various Windows operating system allo…EPSS 24%7.5CVE-2003-0003Microsoft windows 2000 terminal services vulnerabilityBuffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows …EPSS 43%7.5CVE-2002-1260Microsoft windows 2000 vulnerabilityThe Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass security checks an…EPSS 16%7.5CVE-2002-1214Microsoft PPTP Service buffer overflow on Windows XP and 2000The Microsoft PPTP Service on Windows XP and Windows 2000 contains a buffer overflow triggered by a PPTP packet with malformed control data. A remote…EPSS 51%analysed

Source: NIST National Vulnerability Database (record CVE-2002-0444), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.