7.5
CVSSv2

CVE-2002-1179

Published: 28/10/2002 Updated: 12/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the S/MIME Parsing capability in Microsoft Outlook Express 5.5 and 6.0 allows remote malicious users to execute arbitrary code via a digitally signed email with a long "From" address, which triggers the overflow when the user views or previews the message.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft outlook express 6.0

microsoft outlook express 5.5

Exploits

source: wwwsecurityfocuscom/bid/5944/info Microsoft Outlook Express contains an unchecked buffer in the code that generates warning messages when certain error conditions associated with digital signatures are encountered Execution of arbitrary code in the security context of the current user is possible Microsoft has verified that th ...