Show filters
183 Total Results
Displaying 151-160 of 183
Sort by:
Attacker Value
Unknown
CVE-2002-0656
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a large client master key in SSL2 or (2) a large session ID in SSL3.
0
Attacker Value
Unknown
CVE-2002-0655
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, does not properly handle ASCII representations of integers on 64 bit platforms, which could allow attackers to cause a denial of service and possibly execute arbitrary code.
0
Attacker Value
Unknown
CVE-2002-0481
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security settings and execute Javascript via an IFRAME in an HTML email message that references .WMS (Windows Media Skin) or other WMP media files, whose onload handlers execute the player.LaunchURL() Javascript function.
0
Attacker Value
Unknown
CVE-2002-0285
Disclosure Date: May 31, 2002 (last updated February 22, 2025)
Outlook Express 5.5 and 6.0 on Windows treats a carriage return ("CR") in a message header as if it were a valid carriage return/line feed combination (CR/LF), which could allow remote attackers to bypass virus protection and or other filtering mechanisms via a mail message with headers that only contain the CR, which causes Outlook to create separate headers.
0
Attacker Value
Unknown
CVE-2002-1056
Disclosure Date: May 16, 2002 (last updated February 22, 2025)
Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.
0
Attacker Value
Unknown
CVE-2002-0152
Disclosure Date: April 22, 2002 (last updated February 22, 2025)
Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express 5.0 through 5.0.2, Entourage v. X and 2001, PowerPoint v. X, 2001, and 98, and Excel v. X and 2001 for Macintosh.
0
Attacker Value
Unknown
CVE-2001-1547
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Outlook Express 6.0, with "Do not allow attachments to be saved or opened that could potentially be a virus" enabled, does not block email attachments from forwarded messages, which could allow remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2001-0945
Disclosure Date: December 03, 2001 (last updated February 22, 2025)
Buffer overflow in Outlook Express 5.0 through 5.02 for Macintosh allows remote attackers to cause a denial of service via an e-mail message that contains a long line.
0
Attacker Value
Unknown
CVE-2001-0999
Disclosure Date: September 12, 2001 (last updated February 22, 2025)
Outlook Express 6.00 allows remote attackers to execute arbitrary script by embedding SCRIPT tags in a message whose MIME content type is text/plain, contrary to the expected behavior that text/plain messages will not run script.
0
Attacker Value
Unknown
CVE-2001-0538
Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Microsoft Outlook View ActiveX Control in Microsoft Outlook 2002 and earlier allows remote attackers to execute arbitrary commands via a malicious HTML e-mail message or web page.
0