First published: Thu Jun 03 2004(Updated: )
Microsoft Outlook 2003 allows remote attackers to bypass the default zone restrictions and execute script within media files via a Rich Text Format (RTF) message containing an OLE object for the Windows Media Player, which bypasses Media Player's setting to disallow scripting and may lead to unprompted installation of an executable when exploited in conjunction with predictable-file-location exposures such as CVE-2004-0502.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Outlook | =2003 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0503 is considered high severity due to its potential for remote code execution.
CVE-2004-0503 allows remote attackers to bypass security settings and execute scripts through RTF messages.
Microsoft released patches to address the vulnerability in CVE-2004-0503 that should be applied immediately.
Exploitation of CVE-2004-0503 may lead to unauthorized access and control over the affected systems.
To protect against CVE-2004-0503, ensure that Microsoft Outlook 2003 is updated with the latest security patches.