Remote Code Execution Vulnerability in Microsoft Outlook Express
CVE-2006-2386

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
13 December 2006

Summary

A vulnerability in multiple versions of Microsoft Outlook Express enables remote attackers to execute arbitrary code on a victim's system. This is achieved through the exploitation of a specially crafted contact record in a Windows Address Book (WAB) file. When this malicious record is opened by an unsuspecting user, it can lead to unauthorized actions being performed, compromising the security of the system.

References

EPSS Score

56% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.