CVE
- Id
- 6959
- CVE No.
- CVE-2003-0130
- Status
- Candidate
- Description
- The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.
- Phase
- Assigned (20030313)
- Votes
- None (candidate not yet proposed)
- Comments