← Vulnerability feed

Vulnerability record · CVE-2004-0215 · published 6 August 2004

CVE-2004-0215: Avaya ip600 media servers vulnerability

Avaya · Ip600 Media Servers

Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.

5.0 CVSS 2.0 Medium EPSS 16% · top 3.3%
5.0CVSS 2.0 base score
16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
5Affected product versions listed by NVD
16References
16 Jun 2026Last modified by NVD

Description

Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

5 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2004-0215 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2004-1050Internet Explorer 6 heap overflow via IFRAME, FRAME and EMBED attributesInternet Explorer 6 contains a heap-based buffer overflow triggered by long SRC or NAME attributes in IFRAME, FRAME and EMBED elements. A remote atta…EPSS 67%analysed10.0CVE-2004-0201Microsoft HTML Help hh.exe heap buffer overflow via crafted CHM fileThe HTML Help program (hh.exe) in multiple Microsoft Windows versions contains a heap-based buffer overflow triggered by a .CHM file with a large len…EPSS 45%analysed10.0CVE-2004-0212Windows Task Scheduler .job file stack buffer overflowThe Windows Task Scheduler in Windows 2000 and XP, and Internet Explorer 6 on Windows NT 4.0, contains a stack-based buffer overflow triggered by a .…EPSS 64%analysed10.0CVE-2004-0380Outlook Express MHTML handler domain bypass leads to code executionThe MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through 6 SP1 fails to enforce domain restrictions, letting remote attackers bypass s…EPSS 63%analysed10.0CVE-1999-0967Microsoft internet explorer vulnerabilityBuffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol.EPSS 6.9%9.3CVE-2010-3147Microsoft outlook express vulnerabilityUntrusted search path vulnerability in wab.exe 6.00.2900.5512 in Windows Address Book in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, W…EPSS 19%9.3CVE-2010-0816Microsoft outlook express vulnerabilityInteger overflow in inetcomm.dll in Microsoft Outlook Express 5.5 SP2, 6, and 6 SP1; Windows Live Mail on Windows XP SP2 and SP3, Windows Vista SP1 a…EPSS 20%9.3CVE-2007-3897Microsoft Outlook Express and Windows Mail NNTP heap buffer overflowOutlook Express 6 and earlier, plus Windows Mail on Vista, contain a heap-based buffer overflow triggered by long responses from an NNTP news server.…EPSS 55%analysed

Source: NIST National Vulnerability Database (record CVE-2004-0215), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.