Required CVE Record Information
Description
Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable encoded attachments, which makes it easier for remote attackers to read arbitrary files via spoofed "Converted" headers.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- marc.info: 20041113 Eudora 6.2 attachment spoof mailing-listx_transferred
- exchange.xforce.ibmcloud.com: eudora-base64-attach-spoof-variant(18064) vdb-entryx_transferred
- marc.info: 20041113 Eudora 6.2 attachment spoof mailing-listx_transferred
- http://packetstormsecurity.nl/0411-exploits/eudora62014.txt x_transferred