CVE-2001-0538: Critical severity Microsoft Outlook vulnerability
Published Aug 14, 2001
·Updated
Microsoft Outlook View ActiveX Control in Microsoft Outlook 2002 and earlier allows remote attackers to execute arbitrary commands via a malicious HTML e-mail message or web page.
Affected Software
1 affected component
Microsoft Outlook<=2002
Event History
Aug 14, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0538?
CVE-2001-0538 is considered a critical vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2001-0538?
To mitigate CVE-2001-0538, users should upgrade to a more recent version of Microsoft Outlook that is not affected by this vulnerability.
3
What software is affected by CVE-2001-0538?
CVE-2001-0538 affects Microsoft Outlook versions up to and including 2002.
4
Can CVE-2001-0538 be exploited through email?
Yes, CVE-2001-0538 can be exploited via malicious HTML in email messages.
5
Is CVE-2001-0538 still a threat today?
While CVE-2001-0538 has been addressed in later Outlook versions, users of outdated software remain at risk.