Описание
Microsoft Outlook 98 and 2000, and Outlook Express 4.0x and 5.0x, allow remote attackers to read files on the client's system via a malformed HTML message that stores files outside of the cache, aka the "Cache Bypass" vulnerability.
Ссылки
- PatchThird Party AdvisoryUS Government Resource
- PatchVendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.01:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05844
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Microsoft Outlook 98 and 2000, and Outlook Express 4.0x and 5.0x, allow remote attackers to read files on the client's system via a malformed HTML message that stores files outside of the cache, aka the "Cache Bypass" vulnerability.
EPSS
Процентиль: 90%
0.05844
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other