Show filters
29 Total Results
Displaying 11-20 of 29
Sort by:
Attacker Value
Unknown

CVE-2003-0302

Disclosure Date: June 16, 2003 (last updated February 22, 2025)
The IMAP Client for Eudora 5.2.1 allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large literal size values that cause either integer signedness errors or integer overflow errors.
0
Attacker Value
Unknown

CVE-2003-0300

Disclosure Date: June 16, 2003 (last updated February 22, 2025)
The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
0
Attacker Value
Unknown

CVE-2003-0376

Disclosure Date: June 16, 2003 (last updated February 22, 2025)
Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and possibly execute arbitrary code via an Attachment Converted argument with a large number of . (dot) characters.
0
Attacker Value
Unknown

CVE-2003-0336

Disclosure Date: May 22, 2003 (last updated February 22, 2025)
Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) character in a spoofed "Attachment Converted:" string, which is not properly handled by Eudora.
0
Attacker Value
Unknown

CVE-2002-2351

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).
0
Attacker Value
Unknown

CVE-2002-1770

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in the My Computer zone by Internet Explorer.
0
Attacker Value
Unknown

CVE-2002-2313

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Eudora email client 5.1.1, with "use Microsoft viewer" enabled, allows remote attackers to execute arbitrary programs via an HTML email message containing a META refresh tag that references an embedded .mhtml file with ActiveX controls that execute a second embedded program, which is processed by Internet Explorer.
0
Attacker Value
Unknown

CVE-2002-1210

Disclosure Date: November 29, 2002 (last updated February 22, 2025)
Qualcomm Eudora 5.1.1, 5.2, and possibly other versions stores email attachments in a predictable location, which allows remote attackers to read arbitrary files via a link that loads an attachment with malicious script into a frame, which then executes the script in the local browser context.
0
Attacker Value
Unknown

CVE-2002-0456

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.
0
Attacker Value
Unknown

CVE-2002-0833

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a multi-part message with a long boundary string.
0