VYPR

Outlook

by Microsoft

CVEs (151)

  • CVE-2000-0160Feb 21, 2000
    risk 0.01cvss epss 0.09

    The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.

  • CVE-1999-1164Jun 25, 1999
    risk 0.01cvss epss 0.13

    Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang.

  • CVE-2004-2147Dec 31, 2004
    risk 0.00cvss epss 0.01

    Unknown versions of Symantec Norton AntiVirus and Microsoft Outlook allow attackers to cause a denial of service (crash) via malformed e-mail messages (1) without a body or (2) without a carriage return ("\n") separating the headers from the body.

  • CVE-2003-0007Feb 7, 2003
    risk 0.00cvss epss 0.04

    Microsoft Outlook 2002 does not properly handle requests to encrypt email messages with V1 Exchange Server Security certificates, which causes Outlook to send the email in plaintext, aka "Flaw in how Outlook 2002 handles V1 Exchange Server Security Certificates could lead to…

  • CVE-2000-0756Oct 20, 2000
    risk 0.00cvss epss 0.05

    Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service.

  • CVE-2000-0753Oct 20, 2000
    risk 0.00cvss epss 0.05

    The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.

  • CVE-2000-0415May 12, 2000
    risk 0.00cvss epss 0.06

    Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.

  • CVE-2000-0216Feb 29, 2000
    risk 0.00cvss epss 0.05

    Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirected to a large distribution…

  • CVE-1999-0384Jan 1, 1999
    risk 0.00cvss epss 0.01

    The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.

  • CVE-1999-0004Dec 16, 1997
    risk 0.00cvss epss 0.03

    MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.

  • CVE-1999-0519Jan 1, 1997
    risk 0.00cvss epss 0.06

    A NETBIOS/SMB share password is the default, null, or missing.

Page 8 of 8