Microsoft Outlook vulnerabilities

105 known vulnerabilities affecting microsoft/outlook.

Total CVEs
105
CISA KEV
5
actively exploited
Public exploits
16
Exploited in wild
4
Severity breakdown
CRITICAL11HIGH51MEDIUM43

Vulnerabilities

Page 6 of 6
CVE-2000-0419HIGHCVSS 7.5v20002000-05-11
CVE-2000-0419 [HIGH] CVE-2000-0419: The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
nvd
CVE-2000-0329MEDIUMCVSS 5.1PoCv98v20001999-11-11
CVE-2000-0329 [MEDIUM] CVE-2000-0329: A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an atta A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
nvd
CVE-1999-1164MEDIUMCVSS 5.0v97v98+1 more1999-06-25
CVE-1999-1164 [MEDIUM] CVE-1999-1164: Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple em Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang.
nvd
CVE-1999-0384MEDIUMCVSS 4.6v981999-01-01
CVE-1999-0384 [MEDIUM] CVE-1999-0384: The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.
nvd
CVE-1999-0519HIGHCVSS 7.5v20001997-01-01
CVE-1999-0519 [HIGH] CVE-1999-0519: A NETBIOS/SMB share password is the default, null, or missing. A NETBIOS/SMB share password is the default, null, or missing.
nvd