PT-2002-2820 · Microsoft · Outlook
Published
2002-12-31
·
Updated
2008-09-05
·
CVE-2002-2100
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Microsoft Outlook version 2002
Description:
The issue allows remote attackers to bypass file download restrictions for attachments via an HTML email message that uses an IFRAME to reference malicious content.
Recommendations:
For Microsoft Outlook version 2002, consider disabling the ability to reference external content via IFRAMEs in HTML email messages as a temporary workaround until a patch is available. Restrict access to potentially malicious attachments to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Outlook