PT-2002-2820 · Microsoft · Outlook

Published

2002-12-31

·

Updated

2008-09-05

·

CVE-2002-2100

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions: Microsoft Outlook version 2002
Description: The issue allows remote attackers to bypass file download restrictions for attachments via an HTML email message that uses an IFRAME to reference malicious content.
Recommendations: For Microsoft Outlook version 2002, consider disabling the ability to reference external content via IFRAMEs in HTML email messages as a temporary workaround until a patch is available. Restrict access to potentially malicious attachments to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-2100

Affected Products

Outlook