Sign in
CVE-2003-1378
CVE-2003-1378
Description
Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077.
Impact
CVSS v2 : 8.8 HIGH
Type
CWE-264
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:C/I:C/A:N
Quick links
CVE
,
NVD
,
CERT
,
Metasploit
,
Exploit-db
,
Fulldisc
,
Bugtraq
,
Microsoft
,
Red Hat
,
Debian
, GitHub
code
/
issues
,
Google
References
http://www.securityfocus.com/archive/1/312910
http://www.securityfocus.com/archive/1/312929
http://www.securityfocus.com/bid/6923
https://exchange.xforce.ibmcloud.com/vulnerabilities/11411
FAQ
Terms of service
Privacy policy