CVE-2002-2100

Microsoft Outlook 2002 - Unauthenticated Arbitrary File Download via IFRAME in HTML Email

Title source: llm
STIX 2.1

Description

Microsoft Outlook 2002 allows remote attackers to embed bypass the file download restrictions for attachments via an HTML email message that uses an IFRAME to reference malicious content.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4334
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8611.php
Vendor Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-03/0267.html

Scores

EPSS 0.1136
EPSS Percentile 95.6%

Details

Status published
Products (2)
microsoft/outlook 2000
microsoft/outlook 2002
Published Dec 31, 2002
Tracked Since Feb 18, 2026