This script is Copyright (C) 2004-2017 Tenable Network Security, Inc.
Arbitrary code can be executed on the remote host through the web
The remote host has a version of Outlook Express that has a bug in its
MHTML URL processor that could allow an attacker to execute arbitrary
code on this host.
To exploit this flaw, an attacker would need to send a malformed email
to a user of this host using Outlook, or would need to lure him into
visiting a rogue website.
See also :
Microsoft has released a set of patches for Windows 2000, XP and
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 7.7
Public Exploit Available : true