CVE-2004-2137 Information

Description

Outlook Express 6.0 when sending multipart e-mail messages using the \Break apart messages larger than\ setting leaks the BCC recipients of the message to the addresses listed in the To and CC fields which may allow remote attackers to obtain sensitive information.

Reference

http://secunia.com/advisories/12376 http://securitytracker.com/id?1011067 http://support.microsoft.com/kb/843555 http://www.networksecurity.fi/advisories/outlook-bcc.html http://www.osvdb.org/9167 http://www.securityfocus.com/bid/11040 https://exchange.xforce.ibmcloud.com/vulnerabilities/17098

Share on: