3 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 20EXPL: 0

31 Dec 2004 — Eudora before 6.1.1 allows remote attackers to cause a denial of service (crash) via an e-mail with a long "To:" field, possibly due to a buffer overflow. • http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt •

CVSS: 9.8EPSS: 8%CPEs: 5EXPL: 2

06 May 2004 — Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name. • https://www.exploit-db.com/exploits/24096 •

CVSS: 9.8EPSS: 3%CPEs: 6EXPL: 3

31 Dec 2002 — Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot). • https://www.exploit-db.com/exploits/21695 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •