NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.

cve CVE-2000-0980 1 source, 1 claim · Watch

NVD writes:
NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network. El oyente de NMPI (Protocolo de Gestión de Nombres en IPX) en Microsoft NWLink no filtra correctamente los paquetes de una dirección de difusión, lo que permite a atacantes remotos causar una tormenta de difusión e inundar la red. the claim

What it is to other things

affectsmicrosoft/windows_95
NVD
affectsmicrosoft/windows_98
NVD
affectsmicrosoft/windows_98se
NVD
affectsmicrosoft/windows_me
NVD
made_bymicrosoft
NVD

In words only, so not counted until a person confirms one:

affectsn_a/n_a
NVD says “n/a · n/a”
made_byn_a
NVD says “n/a”

What each source says

PropertySourceSaidMeans here
Product
product
NVDn/a
receipt
Source
NVD
Its words
n/a
Read by
field:cve.affected[].affectedData[].product
Said since
2026-09-29 17:49 UTC
Last answered
2026-10-04 12:15 UTC
Original
open at the source
2026-09-29 17:49 UTCn/a
2026-09-29 09:45 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "n/a",
            "vendor": "n/a",
            "versions": [
              {
                "status": "affected",
                "version": "n/a"
              }
            ]
          }
        ],
        "source": "cve@mitre.org"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "82F7322B-8022-4D0B-ADB3-D0F5B6F20309",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*",
                "matchCriteriaId": "2D3B703C-79B2-4FA2-9E12-713AB977A880",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "AA733AD2-D948-46A0-A063-D29081A56F1F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "799DA395-C7F8-477C-8BC7-5B4B88FB7503",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network."
      },
      {
        "lang": "es",
        "value": "El oyente de NMPI (Protocolo de Gestión de Nombres en IPX) en Microsoft NWLink no filtra correctamente los paquetes de una dirección de difusión, lo que permite a atacantes remotos causar una tormenta de difusión e inundar la red."
      }
    ],
    "id": "CVE-2000-0980",
    "lastModified": "2026-09-23T10:10:00.673",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "MEDIUM",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 5.0,
            "confidentialityImpact": "NONE",
            "integrityImpact": "NONE",
            "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 2.9,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ]
    },
    "published": "2000-12-19T05:00:00.000",
    "references": [
      {
        "source": "cve@mitre.org",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      }
    ],
    "sourceIdentifier": "cve@mitre.org",
    "vulnStatus": "Modified",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "NVD-CWE-Other"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ]
  }
}
—
Status
status
NVDModified
receipt
Source
NVD
Its words
Modified
Read by
field:cve.vulnStatus
Said since
2026-09-29 09:45 UTC
Last answered
2026-10-04 12:15 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "n/a",
            "vendor": "n/a",
            "versions": [
              {
                "status": "affected",
                "version": "n/a"
              }
            ]
          }
        ],
        "source": "cve@mitre.org"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "82F7322B-8022-4D0B-ADB3-D0F5B6F20309",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*",
                "matchCriteriaId": "2D3B703C-79B2-4FA2-9E12-713AB977A880",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "AA733AD2-D948-46A0-A063-D29081A56F1F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "799DA395-C7F8-477C-8BC7-5B4B88FB7503",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network."
      },
      {
        "lang": "es",
        "value": "El oyente de NMPI (Protocolo de Gestión de Nombres en IPX) en Microsoft NWLink no filtra correctamente los paquetes de una dirección de difusión, lo que permite a atacantes remotos causar una tormenta de difusión e inundar la red."
      }
    ],
    "id": "CVE-2000-0980",
    "lastModified": "2026-09-23T10:10:00.673",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "MEDIUM",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 5.0,
            "confidentialityImpact": "NONE",
            "integrityImpact": "NONE",
            "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 2.9,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ]
    },
    "published": "2000-12-19T05:00:00.000",
    "references": [
      {
        "source": "cve@mitre.org",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      }
    ],
    "sourceIdentifier": "cve@mitre.org",
    "vulnStatus": "Modified",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "NVD-CWE-Other"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ]
  }
}
—
Vendor
vendor
NVDn/a
receipt
Source
NVD
Its words
n/a
Read by
field:cve.affected[].affectedData[].vendor
Said since
2026-09-29 17:49 UTC
Last answered
2026-10-04 12:15 UTC
Original
open at the source
2026-09-29 17:49 UTCn/a
2026-09-29 09:45 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "n/a",
            "vendor": "n/a",
            "versions": [
              {
                "status": "affected",
                "version": "n/a"
              }
            ]
          }
        ],
        "source": "cve@mitre.org"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "82F7322B-8022-4D0B-ADB3-D0F5B6F20309",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*",
                "matchCriteriaId": "2D3B703C-79B2-4FA2-9E12-713AB977A880",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "AA733AD2-D948-46A0-A063-D29081A56F1F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "799DA395-C7F8-477C-8BC7-5B4B88FB7503",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network."
      },
      {
        "lang": "es",
        "value": "El oyente de NMPI (Protocolo de Gestión de Nombres en IPX) en Microsoft NWLink no filtra correctamente los paquetes de una dirección de difusión, lo que permite a atacantes remotos causar una tormenta de difusión e inundar la red."
      }
    ],
    "id": "CVE-2000-0980",
    "lastModified": "2026-09-23T10:10:00.673",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "MEDIUM",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 5.0,
            "confidentialityImpact": "NONE",
            "integrityImpact": "NONE",
            "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 2.9,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ]
    },
    "published": "2000-12-19T05:00:00.000",
    "references": [
      {
        "source": "cve@mitre.org",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "cve@mitre.org",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Patch",
          "Vendor Advisory"
        ],
        "url": "http://www.securityfocus.com/bid/1781"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/5357"
      }
    ],
    "sourceIdentifier": "cve@mitre.org",
    "vulnStatus": "Modified",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "NVD-CWE-Other"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ]
  }
}
—

vulnerability

NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.
zetlyn/cve-nvd · 2000-12-19
product n/a status Modified vendor n/a source