Vulnerabilities > Microsoft > Outlook Express > 4.72.3120.0

DATE CVE VULNERABILITY TITLE RISK
2007-10-09 CVE-2007-3897 Buffer Errors vulnerability in Microsoft Outlook Express and Windows Mail
Heap-based buffer overflow in Microsoft Outlook Express 6 and earlier, and Windows Mail for Vista, allows remote Network News Transfer Protocol (NNTP) servers to execute arbitrary code via long NNTP responses that trigger memory corruption.
network
microsoft CWE-119
critical
9.3
2004-08-06 CVE-2004-0526 Unspecified vulnerability in Microsoft products
Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.
network
low complexity
microsoft
5.0
2000-05-12 CVE-2000-0415 Unspecified vulnerability in Microsoft Outlook and Outlook Express
Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.
network
low complexity
microsoft
5.0
1999-11-11 CVE-2000-0329 Unspecified vulnerability in Microsoft products
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
network
high complexity
microsoft
5.1
1999-05-11 CVE-1999-1033 Denial of Service vulnerability in Outlook Express POP
Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang.
network
low complexity
microsoft
5.0