Lucene search

K
cveMicrosoftCVE-2006-0027
HistoryMay 10, 2006 - 2:10 a.m.

CVE-2006-0027

2006-05-1002:10:00
microsoft
web.nvd.nist.gov
36
cve-2006-0027
microsoft exchange
vulnerability
remote code execution
email security
vcal
ical

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.973

Percentile

99.9%

Unspecified vulnerability in Microsoft Exchange allows remote attackers to execute arbitrary code via e-mail messages with crafted (1) vCal or (2) iCal Calendar properties.

Affected configurations

Nvd
Node
microsoftexchange_serverMatch2000sp3
OR
microsoftexchange_serverMatch2003sp1
OR
microsoftexchange_serverMatch2003sp2
VendorProductVersionCPE
microsoftexchange_server2000cpe:2.3:a:microsoft:exchange_server:2000:sp3:*:*:*:*:*:*
microsoftexchange_server2003cpe:2.3:a:microsoft:exchange_server:2003:sp1:*:*:*:*:*:*
microsoftexchange_server2003cpe:2.3:a:microsoft:exchange_server:2003:sp2:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.973

Percentile

99.9%