Microsoft Outlook 2013 - - Edition - Edition for -

CPE Details

Microsoft Outlook 2013 - - Edition - Edition for -
2013
2023-07-14
12h26 +00:00
2023-07-27
16h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:microsoft:outlook:2013:-:-:*:-:-:*:*

Informations

Vendor

microsoft

Product

outlook

Version

2013

Update

-

edition

-

Software Edition

-

Target Software

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-35311 2023-07-11 17h03 +00:00 Microsoft Outlook Security Feature Bypass Vulnerability
8.8
High
CVE-2017-17689 2018-05-16 17h00 +00:00 The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.
5.9
Medium
CVE-2018-0850 2018-02-15 02h00 +00:00 Microsoft Outlook 2007, Microsoft Outlook 2010, Microsoft Outlook 2013, Microsoft Outlook 2016, and Microsoft Office 2016 Click-to-Run allow an elevation of privilege vulnerability due to how the format of incoming message is validated, aka "Microsoft Outlook Elevation of Privilege Vulnerability".
6.5
Medium
CVE-2013-3905 2013-11-12 23h00 +00:00 Microsoft Outlook 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT does not properly expand metadata contained in S/MIME certificates, which allows remote attackers to obtain sensitive network configuration and state information via a crafted certificate in an e-mail message, aka "S/MIME AIA Vulnerability."
5
CVE-2007-4040 2007-07-27 22h00 +00:00 Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell metacharacters in an unspecified URI, which are inserted into the command line when invoking the handling process, a similar issue to CVE-2007-3670.
4.3
CVE-2006-6659 2006-12-20 02h00 +00:00 The Microsoft Office Outlook Recipient ActiveX control (ole32.dll) in Windows XP SP2 allows remote attackers to cause a denial of service (Internet Explorer 7 hang) via crafted HTML.
5
CVE-2000-0216 2000-03-22 04h00 +00:00 Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirected to a large distribution list.
5
CVE-2000-0160 2000-02-23 04h00 +00:00 The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
7.6