PT-2004-1252 · Firstclass · Firstclass Desktop Client
Published
2004-01-08
·
Updated
2017-07-11
·
CVE-2004-0037
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
FirstClass Desktop Client version 7.1
Description
The issue allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages.
Recommendations
For FirstClass Desktop Client version 7.1, consider disabling the handling of hyperlinks in FirstClass RTF messages until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Firstclass Desktop Client