Filtered by vendor Qualcomm
Subscriptions
Total
2347 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2002-0456 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | ||||
CVE-2001-1046 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | N/A |
Buffer overflow in qpopper (aka qpop or popper) 4.0 through 4.0.2 allows remote attackers to gain privileges via a long username. | ||||
CVE-2006-0637 | 1 Qualcomm | 1 Eudora Worldmail | 2025-04-03 | N/A |
Buffer overflow in cram.dll in QUALCOMM Eudora WorldMail 3.0 allows remote attackers to execute arbitrary code via an IMAP APPEND command with a long message literal argument, as demonstrated by Worldmail.pl. NOTE: this is a different vector and a different manipulation than CVE-2005-4267, so it might be a different vulnerability than CVE-2005-4267. | ||||
CVE-2005-4267 | 1 Qualcomm | 1 Worldmail | 2025-04-03 | N/A |
Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends with a "}" character, as demonstrated using long (1) LIST, (2) LSUB, (3) SEARCH TEXT, (4) STATUS INBOX, (5) AUTHENTICATE, (6) FETCH, (7) SELECT, and (8) COPY commands. | ||||
CVE-2000-0320 | 2 Qualcomm, Sun | 3 Qpopper, Cobalt Raq 2, Cobalt Raq 3i | 2025-04-03 | N/A |
Qpopper 2.53 and 3.0 does not properly identify the \n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 1023 characters long and ends in \n. | ||||
CVE-2005-3189 | 1 Qualcomm | 1 Worldmail Imap Server | 2025-04-03 | N/A |
Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via ".." sequences in the SELECT command. | ||||
CVE-2000-0874 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF). | ||||
CVE-2002-2351 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot). | ||||
CVE-2005-3098 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | N/A |
poppassd in Qualcomm qpopper 4.0.8 allows local users to modify arbitrary files and gain privileges via the -t (trace file) command line argument. | ||||
CVE-2001-1487 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | N/A |
popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option. | ||||
CVE-2000-0442 | 2 Qualcomm, Sun | 3 Qpopper, Cobalt Raq 2, Cobalt Raq 3i | 2025-04-03 | N/A |
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command. | ||||
CVE-1999-0006 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | 9.8 Critical |
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command. | ||||
CVE-2002-1210 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Qualcomm Eudora 5.1.1, 5.2, and possibly other versions stores email attachments in a predictable location, which allows remote attackers to read arbitrary files via a link that loads an attachment with malicious script into a frame, which then executes the script in the local browser context. | ||||
CVE-2004-2005 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name. | ||||
CVE-2002-2313 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora email client 5.1.1, with "use Microsoft viewer" enabled, allows remote attackers to execute arbitrary programs via an HTML email message containing a META refresh tag that references an embedded .mhtml file with ActiveX controls that execute a second embedded program, which is processed by Internet Explorer. | ||||
CVE-2002-0454 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | N/A |
Qpopper (aka in.qpopper or popper) 4.0.3 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a very large string, which causes an infinite loop. | ||||
CVE-2004-2301 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora before 6.1.1 allows remote attackers to cause a denial of service (crash) via an e-mail with a long "To:" field, possibly due to a buffer overflow. | ||||
CVE-2002-1770 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in the My Computer zone by Internet Explorer. | ||||
CVE-2001-1068 | 1 Qualcomm | 1 Qpopper | 2025-04-03 | N/A |
qpopper 4.01 with PAM based authentication on Red Hat systems generates different error messages when an invalid username is provided instead of a valid name, which allows remote attackers to determine valid usernames on the system. | ||||
CVE-2004-1944 | 1 Qualcomm | 1 Eudora | 2025-04-03 | N/A |
Eudora 6.1 and 6.0.3 for Windows allows remote attackers to cause a denial of service (crash) via a deeply nested multipart MIME message. |