PT-2004-3033 · Microsoft · Outlook Express

Publicado

2004-12-31

·

Atualizado

2017-07-11

·

CVE-2004-2137

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Outlook Express version 6.0
Description The issue allows remote attackers to obtain sensitive information by leaking the BCC recipients of a message to the addresses listed in the To and CC fields when sending multipart e-mail messages using the "Break apart messages larger than" setting.
Recommendations For Outlook Express version 6.0, avoid using the "Break apart messages larger than" setting when sending emails with BCC recipients to prevent information leakage.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-2137

Produtos afetados

Outlook Express