165 results (0.008 seconds)

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

11 Feb 2025 — Microsoft Outlook Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21259 • CWE-451: User Interface (UI) Misrepresentation of Critical Information •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

14 Jan 2025 — Microsoft Outlook Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21361 • CWE-641: Improper Restriction of Names for Files and Other Resources •

CVSS: 6.7EPSS: 0%CPEs: 1EXPL: 0

14 Jan 2025 — Microsoft Outlook Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21357 • CWE-908: Use of Uninitialized Resource •

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — A library injection vulnerability exists in Microsoft Outlook 16.83.3 for macOS. A specially crafted library can leverage Outlook's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions. Existe una vulnerabilidad de inyección de librería en Microsoft Outlook 16.83.3 para macOS. Una librería especialmente manipulada puede aprovechar los privilegios de a... • https://talosintelligence.com/vulnerability_reports/TALOS-2024-1972 • CWE-347: Improper Verification of Cryptographic Signature •

CVSS: 9.0EPSS: 0%CPEs: 1EXPL: 0

08 Oct 2024 — Outlook for Android Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43604 • CWE-1220: Insufficient Granularity of Access Control •

CVSS: 6.8EPSS: 1%CPEs: 1EXPL: 0

10 Sep 2024 — Microsoft Outlook for iOS Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43482 • CWE-285: Improper Authorization •

CVSS: 6.7EPSS: 0%CPEs: 1EXPL: 0

13 Aug 2024 — Microsoft Outlook Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38173 • CWE-73: External Control of File Name or Path •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

09 Jul 2024 — Microsoft Outlook Spoofing Vulnerability Vulnerabilidad de suplantación de Microsoft Outlook • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38020 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 9.0EPSS: 17%CPEs: 8EXPL: 0

11 Jun 2024 — Microsoft Outlook Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Outlook • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30103 • CWE-184: Incomplete List of Disallowed Inputs •

CVSS: 9.4EPSS: 11%CPEs: 1EXPL: 0

09 Apr 2024 — Outlook for Windows Spoofing Vulnerability Vulnerabilidad de suplantación de Outlook para Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20670 • CWE-20: Improper Input Validation •