CVE-2007-3166
- EPSS 3.66%
- Published 11.06.2007 22:30:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in Qualcomm Eudora 7.1.0.9 allows user-assisted, remote IMAP servers to execute arbitrary code via a long FLAGS response to a SELECT INBOX command.
CVE-2007-2770
- EPSS 4.53%
- Published 21.05.2007 21:30:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in Eudora 7.1 allows user-assisted, remote SMTP servers to execute arbitrary code via a long SMTP reply. NOTE: the user must click through a warning about a possible buffer overflow exploit to trigger this issue.
- EPSS 3.45%
- Published 31.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable encoded attachments, which makes it easier for remote attackers to read arbitrary files via spoofed "Converted" headers.
CVE-2004-2005
- EPSS 8.04%
- Published 06.05.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name.
- EPSS 3.92%
- Published 14.04.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Eudora 6.1 and 6.0.3 for Windows allows remote attackers to cause a denial of service (crash) via a deeply nested multipart MIME message.
- EPSS 4.81%
- Published 16.06.2003 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and possibly execute arbitrary code via an Attachment Converted argument with a large number of . (dot) characters.
- EPSS 0.86%
- Published 16.06.2003 04:00:00
- Last modified 03.04.2025 01:03:51
The IMAP Client for Eudora 5.2.1 allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large literal size values that cause either integer signedness errors or integer overflow errors.
- EPSS 0.85%
- Published 16.06.2003 04:00:00
- Last modified 03.04.2025 01:03:51
The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
- EPSS 3.19%
- Published 22.05.2003 04:00:00
- Last modified 03.04.2025 01:03:51
Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) character in a spoofed "Attachment Converted:" string, which is not properly handled by Eudora.
- EPSS 1.19%
- Published 31.12.2002 05:00:00
- Last modified 03.04.2025 01:03:51
Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in...