CVE-2001-0365

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/06/2001
Last modified:
10/10/2017

Description

Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qualcomm:eudora:*:*:*:*:*:*:*:* 5.1 (including)
cpe:2.3:a:qualcomm:eudora:5.0.2:*:*:*:*:*:*:*