Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
outlook express vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2002-0980
The Web Folder component for Internet Explorer 5.5 and 6.0 writes an error message to a known location in the temporary folder, which allows remote malicious users to execute arbitrary code by injecting it into the error message, then referring to the error message file via a mht...
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
1 EDB exploit
7.5
CVSSv2
CVE-2002-1121
SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP prior to 7.2, (2) InterScan VirusWall prior to 3.52 build 1494, (3) the default configuration of MIMEDefang prior to 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2...
Roaring Penguin Mimedefang 2.14
Roaring Penguin Mimedefang 2.20
Network Associates Webshield Smtp 4.5
Network Associates Webshield Smtp 4.5.44
Trend Micro Interscan Viruswall 3.52
Gfi Mailsecurity 7.2
Network Associates Webshield Smtp 4.0.5
Trend Micro Interscan Viruswall 3.5
Trend Micro Interscan Viruswall 3.51
Network Associates Webshield Smtp 4.5.74.0
Roaring Penguin Canit 1.2
7.5
CVSSv2
CVE-2002-0637
InterScan VirusWall 3.52 build 1462 allows remote malicious users to bypass virus protection via e-mail messages with headers that violate RFC specifications by having (or missing) space characters in unexpected places (aka "space gap"), such as (1) Content-Type :"...
Trend Micro Interscan Viruswall 3.52
1 EDB exploit
7.5
CVSSv2
CVE-2002-0285
Outlook Express 5.5 and 6.0 on Windows treats a carriage return ("CR") in a message header as if it were a valid carriage return/line feed combination (CR/LF), which could allow remote malicious users to bypass virus protection and or other filtering mechanisms via a ma...
Microsoft Outlook Express 5.5
Microsoft Outlook Express 6.0
7.5
CVSSv2
CVE-2002-0189
Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote malicious users to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability.
Microsoft Internet Explorer 5.0
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
1 EDB exploit
7.5
CVSSv2
CVE-2002-0152
Buffer overflow in various Microsoft applications for Macintosh allows remote malicious users to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express...
Microsoft Excel X
Microsoft Ie 5.1
Microsoft Outlook Express 5.0
Microsoft Powerpoint 2001
Microsoft Office V.x
Microsoft Outlook Express 5.0.1
Microsoft Office 2001
Microsoft Powerpoint 98
Microsoft Powerpoint V.x
Microsoft Entourage 2001
Microsoft Entourage V. X
Microsoft Excel 2001
Microsoft Outlook Express 5.0.2
Microsoft Outlook Express 5.0.3
7.5
CVSSv2
CVE-2002-0022
Buffer overflow in the implementation of an HTML directive in mshtml.dll in Internet Explorer 5.5 and 6.0 allows remote malicious users to execute arbitrary code via a web page that specifies embedded ActiveX controls in a way that causes 2 Unicode strings to be concatenated.
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
7.5
CVSSv2
CVE-2001-1547
Outlook Express 6.0, with "Do not allow attachments to be saved or opened that could potentially be a virus" enabled, does not block email attachments from forwarded messages, which could allow remote malicious users to execute arbitrary code.
Microsoft Outlook Express 6.0
7.5
CVSSv2
CVE-2001-0999
Outlook Express 6.00 allows remote malicious users to execute arbitrary script by embedding SCRIPT tags in a message whose MIME content type is text/plain, contrary to the expected behavior that text/plain messages will not run script.
Microsoft Outlook Express 6.0
7.5
CVSSv2
CVE-2001-1088
Microsoft Outlook 8.5 and previous versions, and Outlook Express 5 and previous versions, with the "Automatically put people I reply to in my address book" option enabled, do not notify the user when the "Reply-To" address is different than the "From"...
Microsoft Outlook 2000
Microsoft Outlook Express 5.0
Microsoft Outlook Express 4.72.3612
Microsoft Outlook Express 4.5
Microsoft Outlook Express 4.72.3120.0
Microsoft Outlook Express 4.27.3110
Microsoft Outlook Express 4.72.2106
Microsoft Outlook Express 4.0
Microsoft Outlook 98
Microsoft Outlook Express 5.5
Microsoft Outlook 97
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »