VulnerabilityModified
CVE-2004-2005
Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name.
MEDIUM 5.1EPSS 3.49%
Does this matter?
Lower severity and a low EPSS score (3.49%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name.
- CVSS 2.0
- 5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
- EPSS
- 3.49% probability · 88th percentile
- CISA KEV
- Not listed
- Affected
- qualcomm/eudora
- Source
- cve@mitre.org
References
- http://lists.netsys.com/pipermail/full-disclosure/2004-May/021059.html
- http://marc.info/?l=bugtraq&m=108395487628044&w=2
- http://secunia.com/advisories/11568Patch, Vendor Advisory
- http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt
- http://www.securityfocus.com/bid/10298Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16086
- http://lists.netsys.com/pipermail/full-disclosure/2004-May/021059.html
- http://marc.info/?l=bugtraq&m=108395487628044&w=2
- http://secunia.com/advisories/11568Patch, Vendor Advisory
- http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt
- http://www.securityfocus.com/bid/10298Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16086
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.