FrontRange GoldMine mail agent 5.70 and 6.00 before 30503 directly sends HTML to the default browser without setting its security zone or otherwise labeling it untrusted, which allows remote attackers to execute arbitrary code via a message that is rendered in IE using a less secure zone.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0091.html | Exploit Patch Vendor Advisory |
http://www.secnap.net/security/gm001.html | Exploit Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-06-08 21:00
Updated : 2008-09-05 13:33
NVD link : CVE-2003-0241
Mitre link : CVE-2003-0241
JSON object : View
CWE
Products Affected
frontrange
- goldmine