CVE-2004-1521
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
03/04/2025
Description
Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable encoded attachments, which makes it easier for remote attackers to read arbitrary files via spoofed "Converted" headers.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:qualcomm:eudora:6.2.0.14:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=110037078519691&w=2
- http://marc.info/?l=ntbugtraq&m=110053102601655&w=2
- http://packetstormsecurity.nl/0411-exploits/eudora62014.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18064
- http://marc.info/?l=bugtraq&m=110037078519691&w=2
- http://marc.info/?l=ntbugtraq&m=110053102601655&w=2
- http://packetstormsecurity.nl/0411-exploits/eudora62014.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18064



