Microsoft Outlook vulnerabilities
106 known vulnerabilities affecting microsoft/outlook.
Total CVEs
106
CISA KEV
5
actively exploited
Public exploits
18
Exploited in wild
6
Severity breakdown
CRITICAL11HIGH52MEDIUM43
Vulnerabilities
Page 6 of 6
CVE-2003-0007P4MEDIUMCVSS 5.0v20022003-02-07
CVE-2003-0007 [MEDIUM] CVE-2003-0007: Microsoft Outlook 2002 does not properly handle requests to encrypt email messages with V1 Exchange
Microsoft Outlook 2002 does not properly handle requests to encrypt email messages with V1 Exchange Server Security certificates, which causes Outlook to send the email in plaintext, aka "Flaw in how Outlook 2002 handles V1 Exchange Server Security Certificates could lead to Information Disclosure."
nvd
CVE-2000-0415P4MEDIUMCVSS 5.0v982000-05-12
CVE-2000-0415 [MEDIUM] CVE-2000-0415: Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or n
Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.
nvd
CVE-2000-0524P4MEDIUMCVSS 5.0v972000-06-05
CVE-2000-0524 [MEDIUM] CVE-2000-0524: Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending
Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From.
nvd
CVE-2000-0753P4MEDIUMCVSS 5.0v97v98+1 more2000-10-20
CVE-2000-0753 [MEDIUM] CVE-2000-0753: The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winm
The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.
nvd
CVE-2000-0756P4MEDIUMCVSS 5.0v98v20002000-10-20
CVE-2000-0756 [MEDIUM] CVE-2000-0756: Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, whi
Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service.
nvd
CVE-1999-0384P4MEDIUMCVSS 4.6v981999-01-01
CVE-1999-0384 [MEDIUM] CVE-1999-0384: The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read
The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.
nvd
← Previous6 / 6