CVE-2004-1521
Qualcomm Eudora 6.2.0.14 - Unauthenticated Arbitrary File Read via Spoofed Converted Headers
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1521. PoCs published by anonymous.
AI-analyzed exploit summary This Perl script demonstrates a spoofing vulnerability in Eudora 6.0.3 on Windows, allowing attackers to craft malicious emails that can execute arbitrary programs or scripts without proper warnings. It exploits MIME handling and attachment spoofing techniques to bypass LaunchProtect mechanisms.
Description
Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable encoded attachments, which makes it easier for remote attackers to read arbitrary files via spoofed "Converted" headers.
Exploits (1)
This Perl script demonstrates a spoofing vulnerability in Eudora 6.0.3 on Windows, allowing attackers to craft malicious emails that can execute arbitrary programs or scripts without proper warnings. It exploits MIME handling and attachment spoofing techniques to bypass LaunchProtect mechanisms.