FrontRange GoldMine mail agent 5.70 and 6.00 before 30503 directly sends HTML to the default browser without setting its security zone or otherwise labeling it untrusted, which allows remote attackers to execute arbitrary code via a message that is rendered in IE using a less secure zone.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0091.html | Exploit Patch Vendor Advisory |
http://www.secnap.net/security/gm001.html | Exploit Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2003-06-09 04:00
Updated : 2008-09-05 20:33
NVD link : CVE-2003-0241
Mitre link : CVE-2003-0241
CVE.ORG link : CVE-2003-0241
JSON object : View
Products Affected
frontrange
- goldmine
CWE