CVE-2001-1326

Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via an HTML email with a form that is activated from an image that the attacker spoofs as a link, which causes the user to execute the form and access embedded attachments.

Scoring

CVSS base score
0.19
EPSS probability
3.75%
Published
2002-05-03
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs