Advisories Blog | G5 Cyber Security

goldmine.txt

The Goldmine mail agent can run arbitrary code via a malicious formed HTML e-mail. It does not even run the email in the ‘security zone’ as does Microsoft Outlook, but passes anything that looks like HTML to be executed unrestricted directly to the default Browser, which for many is usually Internet Explorer.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31182/goldmine.txt

Source: https://packetstormsecurity.com/files/31182/goldmine.txt.html

Exit mobile version