CVE-2020-12619
- EPSS 0.13%
- Published 20.08.2020 23:15:10
- Last modified 21.11.2024 04:59:55
MailMate before 1.11 automatically imported S/MIME certificates and thereby silently replaced existing ones. This allowed a man-in-the-middle attacker to obtain an email-validated S/MIME certificate from a trusted CA and replace the public key of the...
CVE-2018-15588
- EPSS 0.51%
- Published 11.02.2019 17:29:00
- Last modified 21.11.2024 03:51:07
MailMate before 1.11.3 mishandles a suspicious HTML/MIME structure in a signed/encrypted email.
CVE-2017-17688
- EPSS 2.99%
- Published 16.05.2018 19:29:00
- Last modified 21.11.2024 03:18:27
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification ...
CVE-2017-17689
- EPSS 0.87%
- Published 16.05.2018 19:29:00
- Last modified 21.11.2024 03:18:27
The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.