CVE-2001-0365
Last modified
CVE-2001-0365 is a vulnerability of currently unknown severity. Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.. EPSS estimates a 3.19% chance of exploitation in the next 30 days.
Description
Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Eudora | <= 5.1 |
| Qualcomm | Eudora | 5.0.2 |
References
- http://www.securityfocus.com/bid/2490Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2490Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-0365?
How severe is CVE-2001-0365?
How do I fix CVE-2001-0365?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2001
- CVE-2001-0357FormMail.pl in FormMail 1.6 and earlier allows a remote atta…
- CVE-2001-0358Buffer overflows in Sierra Half-Life build 1573 and earlier …
- CVE-2001-0359Format string vulnerability in Sierra Half-Life build 1573 a…
- CVE-2001-0360Directory traversal vulnerability in help.cgi in Ikonboard 2…
- CVE-2001-0361Implementations of SSH version 1.5, including (1) OpenSSH up…
- CVE-2001-0364SSH Communications Security sshd 2.4 for Windows allows remo…
- CVE-2001-0366saposcol in SAP R/3 Web Application Server Demo before 1.5 t…
- CVE-2001-0367Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a …
- CVE-2001-0368Directory traversal vulnerability in BearShare 2.2.2 and ear…
- CVE-2001-0369Buffer overflow in lpsched on DGUX version R4.20MU06 and MU0…
- CVE-2001-0370fcheck prior to 2.57.59 calls the file signature checking pr…
- CVE-2001-0371Race condition in the UFS and EXT2FS file systems in FreeBSD…
Are you affected by CVE-2001-0365?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
