{ "id": "CVE-2004-2005", "sourceIdentifier": "cve@mitre.org", "published": "2004-05-06T04:00:00.000", "lastModified": "2024-11-20T23:52:16.297", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "baseScore": 5.1, "accessVector": "NETWORK", "accessComplexity": "HIGH", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL" }, "baseSeverity": "MEDIUM", "exploitabilityScore": 4.9, "impactScore": 6.4, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": true, "obtainOtherPrivilege": false, "userInteractionRequired": true } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:qualcomm:eudora:5.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "D64909E5-6E9A-4873-B23C-C825B5CDBAAE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:qualcomm:eudora:6.0:*:*:*:*:*:*:*", "matchCriteriaId": "1AD34A80-171B-4892-A427-633BB8F2085E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:qualcomm:eudora:6.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "8EEF7CAC-0603-436B-B2AD-448AA17D82F5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:qualcomm:eudora:6.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "F01DA3EF-92F6-470E-AE4D-4CDD2776B445" }, { "vulnerable": true, "criteria": "cpe:2.3:a:qualcomm:eudora:6.1:*:*:*:*:*:*:*", "matchCriteriaId": "A72C4B66-AFEC-4035-BD72-A1133E6CCD4F" } ] } ] } ], "references": [ { "url": "http://lists.netsys.com/pipermail/full-disclosure/2004-May/021059.html", "source": "cve@mitre.org" }, { "url": "http://marc.info/?l=bugtraq&m=108395487628044&w=2", "source": "cve@mitre.org" }, { "url": "http://secunia.com/advisories/11568", "source": "cve@mitre.org", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/10298", "source": "cve@mitre.org", "tags": [ "Exploit", "Patch", "Vendor Advisory" ] }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/16086", "source": "cve@mitre.org" }, { "url": "http://lists.netsys.com/pipermail/full-disclosure/2004-May/021059.html", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://marc.info/?l=bugtraq&m=108395487628044&w=2", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://secunia.com/advisories/11568", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://www.eudora.com/download/eudora/windows/6.1.1/RelNotes.txt", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://www.securityfocus.com/bid/10298", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit", "Patch", "Vendor Advisory" ] }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/16086", "source": "af854a3a-2127-422b-91ae-364da2661108" } ] }