Qualcomm Eudora Known File Attachment Location Vulnerability
BID:4306
Info
Qualcomm Eudora Known File Attachment Location Vulnerability
| Bugtraq ID: | 4306 |
| Class: | Design Error |
| CVE: |
CVE-2002-0456 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 16 2002 12:00AM |
| Updated: | Jul 11 2009 11:56AM |
| Credit: | Reported by Magnus Bodin <[email protected]>. |
| Vulnerable: |
Qualcomm Eudora 5.2 Qualcomm Eudora 5.1.1 Qualcomm Eudora 5.1 |
| Not Vulnerable: | |
Discussion
Qualcomm Eudora Known File Attachment Location Vulnerability
Eudora is an email client for Microsoft Windows based systems. Eudora uses Internet Explorer to assist in the viewing of html messages if the 'Use Microsoft Viewer' option is enabled.
A weakness has been discovered in some versions of Eudora. When email is received including a file attachment, the file is stored in a predictable location on the local system. An attacker may be able to use this knowledge to launch further attacks against the vulnerable system.
Eudora is an email client for Microsoft Windows based systems. Eudora uses Internet Explorer to assist in the viewing of html messages if the 'Use Microsoft Viewer' option is enabled.
A weakness has been discovered in some versions of Eudora. When email is received including a file attachment, the file is stored in a predictable location on the local system. An attacker may be able to use this knowledge to launch further attacks against the vulnerable system.