Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2002-1471

Disclosure Date: April 22, 2003 (last updated February 22, 2025)
The camel component for Ximian Evolution 1.0.x and earlier does not verify certificates when it establishes a new SSL connection after previously verifying a certificate, which could allow remote attackers to monitor or modify sessions via a man-in-the-middle attack.
0
Attacker Value
Unknown

CVE-2003-0129

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.
0
Attacker Value
Unknown

CVE-2003-0130

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.
0
Attacker Value
Unknown

CVE-2003-0128

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2001-1359

Disclosure Date: June 08, 2001 (last updated February 22, 2025)
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution server.
0