CVE-2010-0266 Information

Description

Microsoft Office Outlook 2002 SP3 2003 SP3 and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_ATTACH_METHOD property value of ATTACH_BY_REFERENCE which allows user-assisted remote attackers to execute arbitrary code via a crafted message aka \Microsoft Outlook SMB Attachment Vulnerability.\

Reference

http://www.us-cert.gov/cas/techalerts/TA10-194A.html https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-045 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11623

Share on: