HTTP: Microsoft Outlook Object Security Bypass Vulnerability

This signature detects attempts to exploit a known vulnerability against Microsoft Outlook 2003. A successful attack could allow the attacker to have media file script code executed on an affected system.

Extended Description

Microsoft Outlook 2003 allows remote attackers to bypass the default zone restrictions and execute script within media files via a Rich Text Format (RTF) message containing an OLE object for the Windows Media Player, which bypasses Media Player's setting to disallow scripting and may lead to unprompted installation of an executable when exploited in conjunction with predictable-file-location exposures such as CVE-2004-0502.

Affected Products

Microsoft outlook

References

BugTraq: 10369

CVE: CVE-2004-0503

Short Name
HTTP:MS-OUTLOOK-2003-OBJ-SEC-SB
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Bypass CVE-2004-0503 Microsoft Object Outlook Security Vulnerability bid:10369
Release Date
07/08/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Microsoft

CVSS Score

5.0

Found a potential security threat?