8.8

CVE-2003-1378

Exploit
Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Outlook Version 2000
Microsoft ≫ Outlook Version 2000 Update sp2
Microsoft ≫ Outlook Version 2000 Update sr1
Microsoft ≫ Outlook Express Version 6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 15.58% 0.964
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 8.6 9.2
AV:N/AC:M/Au:N/C:C/I:C/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/archive/1/312910
Exploit
http://www.securityfocus.com/archive/1/312929
http://www.securityfocus.com/bid/6923
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/11411