CVE-2001-0677

3 documents3 sources
Severity
5.0MEDIUM
EPSS
1.0%
top 23.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 20
Latest updateApr 30

Description

Eudora 5.0.2 allows a remote attacker to read arbitrary files via an email with the path of the target file in the "Attachment Converted" MIME header, which sends the file when the email is forwarded to the attacker by the user.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDqualcomm/eudora5.0.2

🔴Vulnerability Details

2
GHSA
GHSA-mc97-4cw2-jh8m: Eudora 52022-04-30
CVEList
CVE-2001-0677: Eudora 52002-03-09
CVE-2001-0677 (MEDIUM CVSS 5) | Eudora 5.0.2 allows a remote attack | cvebase.io