Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Eudora Long URL Status Bar Obfuscation

Medium

Synopsis

The remote email client may be tricked into visiting a malicious URI

Description

Eudora versions 6.0.0 through 6.1.0 are vulnerable to a URI obfuscation weakness that may hide the true contents of a link. An attacker, exploiting this bug remotely, would send an HTML email with an obfuscated link which actually redirects to a malicous or misleading web page.

Solution

Upgrade to the most recent version of Eudora.