Freron

Mailmate

4 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Published 20.08.2020 23:15:10
  • Last modified 21.11.2024 04:59:55

MailMate before 1.11 automatically imported S/MIME certificates and thereby silently replaced existing ones. This allowed a man-in-the-middle attacker to obtain an email-validated S/MIME certificate from a trusted CA and replace the public key of the...

  • EPSS 0.51%
  • Published 11.02.2019 17:29:00
  • Last modified 21.11.2024 03:51:07

MailMate before 1.11.3 mishandles a suspicious HTML/MIME structure in a signed/encrypted email.

Exploit
  • EPSS 2.99%
  • Published 16.05.2018 19:29:00
  • Last modified 21.11.2024 03:18:27

The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification ...

Exploit
  • EPSS 0.87%
  • Published 16.05.2018 19:29:00
  • Last modified 21.11.2024 03:18:27

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.