
CVE-2004-2301
https://notcve.org/view.php?id=CVE-2004-2301
31 Dec 2004 — Eudora before 6.1.1 allows remote attackers to cause a denial of service (crash) via an e-mail with a long "To:" field, possibly due to a buffer overflow. • http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt •

CVE-2001-0677
https://notcve.org/view.php?id=CVE-2001-0677
20 Sep 2001 — Eudora 5.0.2 allows a remote attacker to read arbitrary files via an email with the path of the target file in the "Attachment Converted" MIME header, which sends the file when the email is forwarded to the attacker by the user. • http://www.osvdb.org/3085 •

CVE-2001-0365 – Qualcomm Eudora 5.0.2 - 'Use Microsoft Viewer' Code Execution
https://notcve.org/view.php?id=CVE-2001-0365
27 Jun 2001 — Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags. • https://www.exploit-db.com/exploits/20688 •