Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-88qv-6q9j-fhvv

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and execute arbitrary programs.

Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and execute arbitrary programs.

EPSS

Процентиль: 98%
0.51468
Средний

Дефекты

CWE-88

Связанные уязвимости

nvd
почти 22 года назад

Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and execute arbitrary programs.

EPSS

Процентиль: 98%
0.51468
Средний

Дефекты

CWE-88