Page 9 of 46 results (0.005 seconds)

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 0

Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249082 https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-060 •

CVSS: 5.1EPSS: 1%CPEs: 20EXPL: 1

A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability. • https://www.exploit-db.com/exploits/19603 https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-048 •

CVSS: 5.0EPSS: 0%CPEs: 4EXPL: 2

Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell. • https://www.exploit-db.com/exploits/19471 http://marc.info/?l=ntbugtraq&m=93578772920970&w=2 http://www.securityfocus.com/bid/606 •

CVSS: 5.0EPSS: 16%CPEs: 4EXPL: 0

Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang. • http://marc.info/?l=bugtraq&m=93041631215856&w=2 •

CVSS: 5.0EPSS: 0%CPEs: 3EXPL: 2

Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang. • https://www.exploit-db.com/exploits/19207 http://marc.info/?l=bugtraq&m=92647407427342&w=2 http://marc.info/?l=bugtraq&m=92663402004275&w=2 http://www.securityfocus.com/bid/252 •