Users login

Create an account »

JOIN XATRIX

Users login

Home » Hacking News » Outlook Express Attachment Carriage Return/Linefeed Encapsulation Filtering B

Outlook Express Attachment Carriage Return/Linefeed Encapsulation Filtering B

by Nikola Strahija on February 15th, 2002 It is possible to send attachments to Outlook Express users using non-standard attachment techniques. This can be accomplished by encapsulating the data in Carriage Return () specifiers in the Subject line of an email.


Upon receiving an email with a subject line containing carriage returns, Outlook Express will interpret the data section of the mail beginning in the subject line. This problem is compounded by the fact that mail filtering utilities do not search the subject line for this type of data, and can allow a malicious file to pass to an Outlook Express user.

Remote: Yes

Exploit: No

Vulnerable: Microsoft Outlook Express 5.5
Microsoft Outlook Express 6.0


Newsletter signup

Signup to our monthly newsletter and stay in touch with IT news!

Free E-books

We've got ebooks! But they're not online. :( Please give us a few days to bring downloads back.

Contact

Have something to say or just wanna drop us a line? Please keep this in mind: to spam, we reply with spam.

Contact us »