Page 4 of 35 results (0.003 seconds)

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

22 Dec 1999 — Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249082 •

CVSS: 9.8EPSS: 12%CPEs: 3EXPL: 1

06 Dec 1999 — Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol. • https://www.exploit-db.com/exploits/19665 •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

29 Nov 1999 — Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246972 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 8.8EPSS: 1%CPEs: 20EXPL: 1

11 Nov 1999 — A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability. • https://www.exploit-db.com/exploits/19603 •

CVSS: 7.5EPSS: 0%CPEs: 11EXPL: 0

01 Nov 1999 — By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0827 •