CVE-2002-2101 Information

Description

Microsoft Outlook 2002 allows remote attackers to execute arbitrary JavaScript code even when scripting is disabled via an \about:\ or \javascript:\ URI in the href attribute of an \a\ tag.

Reference

http://archives.neohapsis.com/archives/bugtraq/2002-03/0267.html http://www.iss.net/security_center/static/8613.php outlook-href-url-javascript(8613) http://www.securityfocus.com/bid/4337

Share on: