First published: Tue Aug 14 2001(Updated: )
Microsoft Outlook View ActiveX Control in Microsoft Outlook 2002 and earlier allows remote attackers to execute arbitrary commands via a malicious HTML e-mail message or web page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Outlook | <=2002 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0538 is considered a critical vulnerability due to the potential for arbitrary code execution.
To mitigate CVE-2001-0538, users should upgrade to a more recent version of Microsoft Outlook that is not affected by this vulnerability.
CVE-2001-0538 affects Microsoft Outlook versions up to and including 2002.
Yes, CVE-2001-0538 can be exploited via malicious HTML in email messages.
While CVE-2001-0538 has been addressed in later Outlook versions, users of outdated software remain at risk.