CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2010-0816

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1460%
EPSS Percentile42.63th
Published2010年5月12日
Last Modified2026年4月29日

Vulnerability Description

Integer overflow in inetcomm.dll in Microsoft Outlook Express 5.5 SP2, 6, and 6 SP1; Windows Live Mail on Windows XP SP2 and SP3, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7; and Windows Mail on Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote e-mail servers and man-in-the-middle attackers to execute arbitrary code via a crafted (1) POP3 or (2) IMAP response, as demonstrated by a certain +OK response on TCP port 110, aka "Outlook Express and Windows Mail Integer Overflow Vulnerability."

Affected Platforms (CPE)

📦
Microsoft

Outlook Express

= 5.5
📦
Microsoft

Outlook Express

= 6.0
📦
Microsoft

Outlook Express

= 6.0
📦
Microsoft

Windows Live Mail

All versions
📦
Microsoft

Windows Mail

All versions

References & Advisories

相關漏洞威脅