PT-2001-2632 · Microsoft · Outlook Express
Published
2001-12-31
·
Updated
2008-09-05
·
CVE-2001-1547
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Outlook Express version 6.0
Description
The issue allows remote attackers to execute arbitrary code by not blocking email attachments from forwarded messages, even when the "Do not allow attachments to be saved or opened that could potentially be a virus" option is enabled.
Recommendations
For Outlook Express version 6.0, consider disabling the ability to receive or open forwarded messages with attachments until a fix is available. Restrict access to potentially malicious attachments to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Outlook Express