Vulnerabilities > CVE-2004-0501 - Unspecified vulnerability in Microsoft Outlook 2003

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
microsoft
exploit available

Summary

Outlook 2003 allows remote attackers to bypass intended access restrictions and cause Outlook to request a URL from a remote site via an HTML e-mail message containing a Vector Markup Language (VML) entity whose src parameter points to the remote site, which could allow remote attackers to know when a message has been read, verify valid e-mail addresses, and possibly leak other information.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Exploit-Db

descriptionMicrosoft Outlook 2003Mail Client E-mail Address Verification Weakness. CVE-2004-0501. Remote exploit for windows platform
idEDB-ID:24114
last seen2016-02-02
modified2004-05-11
published2004-05-11
reporterhttp-equiv
sourcehttps://www.exploit-db.com/download/24114/
titleMicrosoft Outlook 2003Mail Client E-mail Address Verification Weakness