Vulnerabilities > Microsoft > Outlook Express > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0526 Unspecified vulnerability in Microsoft products
Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.
network
low complexity
microsoft
5.0
2004-08-06 CVE-2004-0215 Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.
network
low complexity
avaya microsoft
5.0
2003-06-16 CVE-2003-0301 Denial-Of-Service vulnerability in Microsoft Outlook Express 6.00.2800.1106
The IMAP Client for Outlook Express 6.00.2800.1106 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
network
low complexity
microsoft
5.0
2003-06-16 CVE-2003-0300 Denial-Of-Service vulnerability in Pine
The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
5.0
2002-12-31 CVE-2002-2164 Denial of Service vulnerability in Alleged Outlook Express Link
Buffer overflow in Microsoft Outlook Express 5.0, 5.5, and 6.0 allows remote attackers to cause a denial of service (crash) via a long <A HREF> link.
network
low complexity
microsoft
5.0
2001-12-03 CVE-2001-0945 Buffer Overflow vulnerability in Microsoft Outlook Express 5.0/5.0.1/5.0.2
Buffer overflow in Outlook Express 5.0 through 5.02 for Macintosh allows remote attackers to cause a denial of service via an e-mail message that contains a long line.
network
low complexity
microsoft
5.0
2001-06-02 CVE-2001-0322 Unspecified vulnerability in Microsoft Internet Explorer, Outlook and Outlook Express
MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.
network
low complexity
microsoft
5.0
2000-07-20 CVE-2000-0653 Unspecified vulnerability in Microsoft Outlook Express
Microsoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express windows, aka the "Persistent Mail-Browser Link" vulnerability.
network
low complexity
microsoft
5.0
2000-07-18 CVE-2000-0567 Unspecified vulnerability in Microsoft Outlook and Outlook Express
Buffer overflow in Microsoft Outlook and Outlook Express allows remote attackers to execute arbitrary commands via a long Date field in an email header, aka the "Malformed E-mail Header" vulnerability.
network
low complexity
microsoft
5.0
2000-05-12 CVE-2000-0415 Unspecified vulnerability in Microsoft Outlook and Outlook Express
Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.
network
low complexity
microsoft
5.0