Show filters
183 Total Results
Displaying 171-180 of 183
Sort by:
Attacker Value
Unknown

CVE-2000-0415

Disclosure Date: May 12, 2000 (last updated February 22, 2025)
Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.
0
Attacker Value
Unknown

CVE-2000-0419

Disclosure Date: May 11, 2000 (last updated February 22, 2025)
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
0
Attacker Value
Unknown

CVE-2000-0216

Disclosure Date: February 29, 2000 (last updated February 22, 2025)
Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirected to a large distribution list.
0
Attacker Value
Unknown

CVE-2000-0160

Disclosure Date: February 21, 2000 (last updated February 22, 2025)
The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
0
Attacker Value
Unknown

CVE-2000-0105

Disclosure Date: February 01, 2000 (last updated February 22, 2025)
Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that accesses a variable that references subsequent email messages that are read by the client.
0
Attacker Value
Unknown

CVE-2000-0036

Disclosure Date: December 22, 1999 (last updated February 22, 2025)
Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability.
0
Attacker Value
Unknown

CVE-2000-0329

Disclosure Date: November 11, 1999 (last updated February 22, 2025)
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
0
Attacker Value
Unknown

CVE-1999-1016

Disclosure Date: August 27, 1999 (last updated February 22, 2025)
Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.
0
Attacker Value
Unknown

CVE-1999-1164

Disclosure Date: June 25, 1999 (last updated February 22, 2025)
Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang.
0
Attacker Value
Unknown

CVE-1999-1033

Disclosure Date: May 11, 1999 (last updated February 22, 2025)
Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang.
0