CVE-2001-1088
Published Jun 5, 2001
Last updated a year ago
Overview
- Description
- Microsoft Outlook 8.5 and earlier, and Outlook Express 5 and earlier, with the "Automatically put people I reply to in my address book" option enabled, do not notify the user when the "Reply-To" address is different than the "From" address, which could allow an untrusted remote attacker to spoof legitimate addresses and intercept email from the client that is intended for another user.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8" }, { "criteria": "cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52970A43-173E-477B-80BF-6FDBB6B0EECD" }, { "criteria": "cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D52F17AB-2C87-4C1A-91B5-267ABBCF5844" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6764F97F-6906-4953-BB1C-AA6345FA8FBE" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67AB674C-70E1-4CCB-8F88-0741AAE6DA6E" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.27.3110:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A5A497C-D03E-4666-BFCE-632F9943DB96" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.72.2106:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D635E46-B428-498D-9C6C-7CA9EB397C96" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.72.3120.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7769EE2E-A740-4AE8-B1B1-A5256C12601D" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:4.72.3612:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F6C57670-B009-4C06-BAFD-B5212750F298" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F71D6D7-6CB2-4BE9-839A-A5714144029C" }, { "criteria": "cpe:2.3:a:microsoft:outlook_express:5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "57C8ACA2-A3C6-4435-9C0C-B316879FE1FA" } ], "operator": "OR" } ] } ]