CVE-2002-1056 Information
Feb 14, 2021
cve
Description
Microsoft Outlook 2000 and 2002 when configured to use Microsoft Word as the email editor does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF) which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.
Reference
http://marc.info/?l=bugtraq&m=101760380418890&w=2 http://online.securityfocus.com/archive/1/265621 http://www.iss.net/security_center/static/8708.php http://www.securityfocus.com/bid/4397 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-021 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A205 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A429
Share on: