Back to search
CVE-2005-4840
Published: Jun 7, 2007
Modified: Aug 8, 2024
PUBLISHED
Description
The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of service (NULL dereference and browser crash) by creating the OutlookExpress.AddressBook COM object, which is not intended for use within Internet Explorer.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20070606 IE 6 / MS Office Outlook Express Address Book Activex DoS
mailing-list
x_refsource_BUGTRAQ
26836
vdb-entry
x_refsource_OSVDB
outlook-addressbook-activex-dos(34755)
vdb-entry
x_refsource_XF
20050301 IObjectSafety and Internet Explorer
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now