CVE-2002-2313

Published Dec 31, 2002

Last updated 7 hours ago

Overview

Description
Eudora email client 5.1.1, with "use Microsoft viewer" enabled, allows remote attackers to execute arbitrary programs via an HTML email message containing a META refresh tag that references an embedded .mhtml file with ActiveX controls that execute a second embedded program, which is processed by Internet Explorer.
Source
cve@mitre.org
NVD status
Deferred

Risk scores

CVSS 2.0

Type
Primary
Base score
8.8
Impact score
9.2
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:C/I:C/A:N

Weaknesses

nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations