[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2006-0002Date: (C)2006-01-10   (M)2023-12-22


Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3, and Office allows remote attackers to execute arbitrary code via an e-mail message with a crafted Transport Neutral Encapsulation Format (TNEF) MIME attachment, related to message length validation.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
SECTRACK-1015460
SECTRACK-1015461
BID-16197
SECUNIA-18368
http://www.securityfocus.com/archive/1/421518/100/0/threaded
http://www.securityfocus.com/archive/1/421520/100/0/threaded
SREASON-330
SREASON-331
ADV-2006-0119
MS06-003
TA06-010A
VU#252146
http://support.avaya.com/elmodocs2/security/ASA-2006-004.htm
oval:org.mitre.oval:def:1082
oval:org.mitre.oval:def:1165
oval:org.mitre.oval:def:1316
oval:org.mitre.oval:def:1456
oval:org.mitre.oval:def:1485
oval:org.mitre.oval:def:624
win-tnef-overflow(22878)

CPE    14
cpe:/a:microsoft:office:xp:sp3
cpe:/a:microsoft:outlook:2000:sp3
cpe:/a:microsoft:outlook:2002:sp3
cpe:/a:microsoft:office:2003:sp1
...
OVAL    6
oval:org.mitre.oval:def:1082
oval:org.mitre.oval:def:1165
oval:org.mitre.oval:def:624
oval:org.mitre.oval:def:1485
...

© SecPod Technologies