CVE-2000-0621: High severity Microsoft Outlook vulnerability
Published Jul 20, 2000
·Updated
Microsoft Outlook 98 and 2000, and Outlook Express 4.0x and 5.0x, allow remote attackers to read files on the client's system via a malformed HTML message that stores files outside of the cache, aka the "Cache Bypass" vulnerability.
Affected Software
7 affected components
Microsoft Outlook=97
Microsoft Outlook=98
Microsoft Outlook=2000
Microsoft Outlook Express=4.0
Microsoft Outlook Express=4.01
Microsoft Outlook Express=5.0
Microsoft Outlook Express=5.0.1
Remediation
Patch Available
Patch Available
Event History
Jul 20, 2000
CVE Published
04:00 AM
Oct 13, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0621?
CVE-2000-0621 is considered a moderate severity vulnerability.
2
How do I fix CVE-2000-0621?
To fix CVE-2000-0621, users should apply the latest security patches provided by Microsoft for Outlook and Outlook Express.
3
What versions are affected by CVE-2000-0621?
CVE-2000-0621 affects Microsoft Outlook 97, 98, 2000 and Outlook Express versions 4.0, 4.01, 5.0, and 5.0.1.
4
What is the impact of CVE-2000-0621?
The impact of CVE-2000-0621 allows remote attackers to read files from the client's system via malformed HTML messages.
5
Who is at risk from CVE-2000-0621?
Users of vulnerable versions of Microsoft Outlook and Outlook Express are at risk from CVE-2000-0621.