Lucene search

K
cveMitreCVE-2006-2111
HistoryMay 01, 2006 - 7:06 p.m.

CVE-2006-2111

2006-05-0119:06:00
CWE-200
mitre
web.nvd.nist.gov
28
microsoft outlook express
internet explorer
vulnerability
remote attacker
information disclosure
security

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

5.9

Confidence

Low

EPSS

0.096

Percentile

94.9%

A component in Microsoft Outlook Express 6 allows remote attackers to bypass domain restrictions and obtain sensitive information via redirections with the mhtml: URI handler, as originally reported for Internet Explorer 6 and 7, aka “URL Redirect Cross Domain Information Disclosure Vulnerability.”

Affected configurations

Nvd
Node
microsoftoutlook_expressMatch6.0
VendorProductVersionCPE
microsoftoutlook_express6.0cpe:2.3:a:microsoft:outlook_express:6.0:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

5.9

Confidence

Low

EPSS

0.096

Percentile

94.9%