← All CVEs

CVE-2006-0014

medium · 5.1

Buffer overflow in Microsoft Outlook Express 5.5 and 6 allows remote attackers to execute arbitrary code via a crafted Windows Address Book (WAB) file containing "certain Unicode strings" and modified length values.

5.1
CVSS
23.9%
EPSS (exploit prob.)
98th
EPSS percentile
2006-04-12
Published

AV:N/AC:H/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
microsoftoutlook_express5.5
microsoftoutlook_express5.5
microsoftoutlook_express5.5
microsoftoutlook_express6.0
microsoftoutlook_express6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-0014