PT-2003-1458 · Frontrange · Frontrange Goldmine
Published
2003-05-30
·
Updated
2008-09-05
·
CVE-2003-0241
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
FrontRange GoldMine mail agent versions 5.70 through 6.00 before 30503
Description:
The issue allows remote attackers to execute arbitrary code via a message that is rendered in IE using a less secure zone, as the mail agent directly sends HTML to the default browser without setting its security zone or labeling it untrusted.
Recommendations:
For versions 5.70 through 6.00 before 30503, update to a version that includes the fix, specifically version 30503 or later, to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Frontrange Goldmine