Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
BID:11447
Info
Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
| Bugtraq ID: | 11447 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 18 2004 12:00AM |
| Updated: | Oct 18 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to "[email protected]" <[email protected]>. |
| Vulnerable: |
Microsoft Outlook Express 5.0.1 Microsoft Outlook Express 4.72.3612 Microsoft Outlook Express 4.72.3120 Microsoft Outlook Express 4.72.2106 Microsoft Outlook Express 4.27.3110 Microsoft Outlook Express 4.0.1 SP2 Microsoft Outlook Express 6.0 SP1 Microsoft Outlook Express 6.0 Microsoft Outlook Express 5.5 SP2 Microsoft Outlook Express 5.5 SP1 Microsoft Outlook Express 5.5 Microsoft Outlook Express 5.0 Microsoft Outlook Express 4.0 |
| Not Vulnerable: | |
Discussion
Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
Microsoft Outlook Express is reported prone to a security policy bypass vulnerability.
The vulnerability presents itself if an attached image file is referenced using a specially crafted CID URI.
This will result in a policy bypass because the image will be automatically rendered when the email is viewed in Outlook Express.
Microsoft Outlook Express is reported prone to a security policy bypass vulnerability.
The vulnerability presents itself if an attached image file is referenced using a specially crafted CID URI.
This will result in a policy bypass because the image will be automatically rendered when the email is viewed in Outlook Express.
Exploit / POC
Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
The following proof of concept is supplied by http-equiv:
<CENTER><IMG SRC="CID:{F69034DE-F779-4AA2-B5A9-
7413133C2A29}/malware.JPG"></CENTER>
The following proof of concept is supplied by http-equiv:
<CENTER><IMG SRC="CID:{F69034DE-F779-4AA2-B5A9-
7413133C2A29}/malware.JPG"></CENTER>
Solution / Fix
Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft Outlook Express Plaintext Email Security Policy Bypass Vulnerability
References:
References:
- Technet Security (Microsoft)