First published: Thu Jul 20 2000(Updated: )
Microsoft Outlook 98 and 2000, and Outlook Express 4.0x and 5.0x, allow remote attackers to read files on the client's system via a malformed HTML message that stores files outside of the cache, aka the "Cache Bypass" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Outlook | =97 | |
Microsoft Outlook | =98 | |
Microsoft Outlook | =2000 | |
Microsoft Outlook Express | =4.0 | |
Microsoft Outlook Express | =4.01 | |
Microsoft Outlook Express | =5.0 | |
Microsoft Outlook Express | =5.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0621 is considered a moderate severity vulnerability.
To fix CVE-2000-0621, users should apply the latest security patches provided by Microsoft for Outlook and Outlook Express.
CVE-2000-0621 affects Microsoft Outlook 97, 98, 2000 and Outlook Express versions 4.0, 4.01, 5.0, and 5.0.1.
The impact of CVE-2000-0621 allows remote attackers to read files from the client's system via malformed HTML messages.
Users of vulnerable versions of Microsoft Outlook and Outlook Express are at risk from CVE-2000-0621.