Qualcomm Eudora WebBrowser Control Embedded Media Player File Vulnerability

The WebBrowser control is used in some email clients in order to launch Internet Explorer to render HTML content.

A vulnerability exists that may allow an email message to automatically execute message attachments in email clients using the WebBrowser control. If a Windows Media Player file is referenced within a <t:video> tag, JavaScript commands included in the file may automatically execute when the email is viewed.


 

Privacy Statement
Copyright 2010, SecurityFocus