Vulnerabilities > Microsoft > Hotmail

DATE CVE VULNERABILITY TITLE RISK
2000-01-10 CVE-2000-0081 Unspecified vulnerability in Microsoft Hotmail
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g.
network
low complexity
microsoft
critical
10.0
2000-01-04 CVE-2000-0085 Unspecified vulnerability in Microsoft Hotmail
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.
network
low complexity
microsoft
7.5
1999-09-13 CVE-1999-0750 Unspecified vulnerability in Microsoft Hotmail
Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account.
network
high complexity
microsoft
5.1