Eudora
Vendor:
First CVE: Jul 29, 1998 · Active for 27 years
24
Total CVEs
More Total CVEs than 95% of tracked products
3.0
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Eudora over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 29, 1998
27 years ago
Most Recent CVE
Jun 11, 2007
6,984 days ago
CVE Severity & Scoring
Eudora24 CVEs
71%
29%
All CVEs352,708 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network1 (4.2%)
Unknown23 (95.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (4.2%)
High0 (0.0%)
Unknown23 (95.8%)
User Interaction
None1 (4.2%)
Unknown23 (95.8%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (4.2%)
Unknown23 (95.8%)
Top CVEs
Signals from CVEs in this product scope (24 CVEs).
24 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2770HIGH Stack-based buffer overflow in Eudora 7.1 allows user-assisted, remote SMTP servers to execute arbitrary code via a long SMTP reply. NOTE: the user must click through a warning ab | May 21, 2007 | 9.3 | 33 | NO | YES |
CVE-2004-2005MEDIUM Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a lo | May 6, 2004 | 5.1 | 32 | NO | YES |
CVE-2002-2351MEDIUM Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot). | Dec 31, 2002 | 6.4 | 32 | NO | YES |
CVE-2000-0342HIGH Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka "Steal | Apr 28, 2000 | 7.5 | 32 | NO | YES |
CVE-2002-0833HIGH Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a multi-part message with a long boundary | Aug 12, 2002 | 7.5 | 29 | NO | YES |
CVE-2001-0365HIGH Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email | Jun 27, 2001 | 7.5 | 29 | NO | YES |
CVE-2001-1326HIGH Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via a | May 29, 2001 | 7.5 | 29 | NO | YES |
CVE-2007-3166MEDIUM Buffer overflow in Qualcomm Eudora 7.1.0.9 allows user-assisted, remote IMAP servers to execute arbitrary code via a long FLAGS response to a SELECT INBOX command. | Jun 11, 2007 | 6.8 | 27 | NO | YES |
CVE-1999-1016MEDIUM Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or | Aug 27, 1999 | 5.0 | 25 | NO | YES |
CVE-2004-1944MEDIUM Eudora 6.1 and 6.0.3 for Windows allows remote attackers to cause a denial of service (crash) via a deeply nested multipart MIME message. | Apr 14, 2004 | 5.0 | 23 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (24 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
13 CVEs
54.2% of CVEs· 93rd percentile
Social Chatter
Signals from CVEs in this product scope (24 CVEs).
Media Mentions
Signals from CVEs in this product scope (24 CVEs).
Top CNAs Publishing CVEs For Eudora
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 7.1.0.9 | 1 | 6.8 | 2.1% | 0 | 1 |
| 7.1 | 1 | 9.3 | 2.9% | 0 | 1 |
| 6.2.0.14 | 1 | 5.0 | 1.7% | 0 | 1 |
| 6.1.1 | 1 | 6.4 | 2.6% | 0 | 1 |
| 6.1 | 2 | 5.0 | 2.7% | 0 | 2 |
| 6.0.3 | 2 | 5.0 | 2.7% | 0 | 2 |
| 6.0.1 | 2 | 5.8 | 3.1% | 0 | 2 |
| 6.0 | 2 | 5.8 | 3.1% | 0 | 2 |
| 5.2.1 | 6 | 5.3 | 2.5% | 0 | 4 |
| 5.2 | 2 | 5.7 | 1.7% | 0 | 1 |
| 5.1.1 | 3 | 7.1 | 1.5% | 0 | 1 |
| 5.1 | 4 | 6.0 | 2.0% | 0 | 2 |
| 5.0j | 1 | 7.5 | 3.0% | 0 | 1 |
| 5.0.2 | 2 | 6.3 | 2.1% | 0 | 1 |
| 4.3 | 2 | 6.3 | 1.0% | 0 | 0 |
| 4.2 | 2 | 6.3 | 1.0% | 0 | 0 |
| 4.0 | 1 | 7.5 | 3.5% | 0 | 1 |