6.4
CVSSv2

CVE-2002-2351

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 650
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Eudora 5.1 allows remote malicious users to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm eudora 5.2.1

qualcomm eudora 6.0.1

qualcomm eudora 6.1.1

qualcomm eudora 5.1

qualcomm eudora 5.2

qualcomm eudora 6.0

Exploits

source: wwwsecurityfocuscom/bid/5432/info Eudora is reported to be prone to an issue which may allow attackers to spoof the file extension in an attachment This may aid an attacker in enticing a user of the e-mail client into executing malicious content, and in avoiding generating warning messages It is possible to refer to other fil ...
source: wwwsecurityfocuscom/bid/5432/info Eudora is reported to be prone to an issue which may allow attackers to spoof the file extension in an attachment This may aid an attacker in enticing a user of the e-mail client into executing malicious content, and in avoiding generating warning messages It is possible to refer to other files ...