Description
Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) character in a spoofed "Attachment Converted:" string, which is not properly handled by Eudora.
Affected products
- qualcomm / eudora5.2.1 – 5.2.1
Exploits & proofs of concept
- exploit-dbQualcomm Eudora 4.2/4.3 - Warning Message Circumventionby Bennett Haselton
References
Updated 13m ago · 8 sources