CVE-2017-17688
- EPSS 2.99%
- Veröffentlicht 16.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:18:27
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification ...
CVE-2017-17689
- EPSS 0.87%
- Veröffentlicht 16.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:18:27
The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.
CVE-2010-3887
- EPSS 0.16%
- Veröffentlicht 08.10.2010 22:00:36
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Limit Mail feature in the Parental Controls functionality in Mail on Apple Mac OS X does not properly enforce the correspondence whitelist, which allows remote attackers to bypass intended access restrictions and conduct e-mail communication by l...
- EPSS 0.53%
- Veröffentlicht 08.10.2008 18:00:03
- Zuletzt bearbeitet 09.04.2025 00:30:58
Apple Mail.app 3.5 on Mac OS X, when "Store draft messages on the server" is enabled, stores draft copies of S/MIME email in plaintext on the email server, which allows server owners and remote man-in-the-middle attackers to read sensitive mail.
CVE-2008-0039
- EPSS 0.56%
- Veröffentlicht 12.02.2008 20:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Mail in Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary commands via a crafted file:// URL.
CVE-2005-2512
- EPSS 0.06%
- Veröffentlicht 19.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Mail.app in Mac OS 10.4.2 and earlier, when printing or forwarding an HTML message, loads remote images even when the user's preferences state otherwise, which could result in a privacy leak.