CVE-2003-0241
 
Severity Score
7.5
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
2
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
FrontRange GoldMine mail agent 5.70 and 6.00 before 30503 directly sends HTML to the default browser without setting its security zone or otherwise labeling it untrusted, which allows remote attackers to execute arbitrary code via a message that is rendered in IE using a less secure zone.
FrontRange GoldMine mail agent 5.70 y 6.00 anteiror a30503 envía directamente HTML al navegador por defecto sin fijar su zona de seguridad o marcarla como insegura, lo que permite que atacantes remotos ejecuten código arbitrario mediante un mensaje que se muestre en Internet Explorer usando una zona menos segura.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2003-05-01 CVE Reserved
- 2003-05-30 CVE Published
- 2024-03-27 EPSS Updated
- 2024-08-08 CVE Updated
- 2024-08-08 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0091.html | 2024-08-08 | |
http://www.secnap.net/security/gm001.html | 2024-08-08 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Frontrange Search vendor "Frontrange" | Goldmine Search vendor "Frontrange" for product "Goldmine" | 5.70 Search vendor "Frontrange" for product "Goldmine" and version "5.70" | - |
Affected
| ||||||
Frontrange Search vendor "Frontrange" | Goldmine Search vendor "Frontrange" for product "Goldmine" | 6.00 Search vendor "Frontrange" for product "Goldmine" and version "6.00" | - |
Affected
|