CVE-2001-0398
Last modified
CVE-2001-0398 is a vulnerability of currently unknown severity. The BAT! mail client allows remote attackers to bypass user warnings of an executable attachment and execute arbitrary commands via an attachment whose file name contains many spaces, which also causes the BAT! to misrepresent the attachment's type with a different icon.. EPSS estimates a 2.04% chance of exploitation in the next 30 days.
Description
The BAT! mail client allows remote attackers to bypass user warnings of an executable attachment and execute arbitrary commands via an attachment whose file name contains many spaces, which also causes the BAT! to misrepresent the attachment's type with a different icon.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ritlabs | The Bat | 1.0_build1336 |
| Ritlabs | The Bat | 1.0_build1349 |
| Ritlabs | The Bat | 1.1 |
| Ritlabs | The Bat | 1.011 |
| Ritlabs | The Bat | 1.14 |
| Ritlabs | The Bat | 1.15 |
| Ritlabs | The Bat | 1.015 |
| Ritlabs | The Bat | 1.17 |
| Ritlabs | The Bat | 1.18 |
| Ritlabs | The Bat | 1.19 |
| Ritlabs | The Bat | 1.21 |
| Ritlabs | The Bat | 1.22 |
| Ritlabs | The Bat | 1.028 |
| Ritlabs | The Bat | 1.029 |
| Ritlabs | The Bat | 1.31 |
| Ritlabs | The Bat | 1.031 |
| Ritlabs | The Bat | 1.32 |
| Ritlabs | The Bat | 1.032 |
| Ritlabs | The Bat | 1.33 |
| Ritlabs | The Bat | 1.34 |
| Ritlabs | The Bat | 1.035 |
| Ritlabs | The Bat | 1.35 |
| Ritlabs | The Bat | 1.036 |
| Ritlabs | The Bat | 1.36 |
| Ritlabs | The Bat | 1.037 |
| Ritlabs | The Bat | 1.39 |
| Ritlabs | The Bat | 1.039 |
| Ritlabs | The Bat | 1.041 |
| Ritlabs | The Bat | 1.41 |
| Ritlabs | The Bat | 1.42 |
| Ritlabs | The Bat | 1.42f |
| Ritlabs | The Bat | 1.043 |
| Ritlabs | The Bat | 1.43 |
| Ritlabs | The Bat | 1.44 |
| Ritlabs | The Bat | 1.45 |
| Ritlabs | The Bat | 1.46 |
| Ritlabs | The Bat | 1.47 |
| Ritlabs | The Bat | 1.48 |
| Ritlabs | The Bat | 1.49 |
| Ritlabs | The Bat | 1.101 |
References
- http://www.securityfocus.com/bid/2530Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2530Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-0398?
How severe is CVE-2001-0398?
How do I fix CVE-2001-0398?
Are you affected by CVE-2001-0398?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
