Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple mail - vulnerabilities and exploits
(subscribe to this query)
570
VMScore
CVE-2020-9920
A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. A malicious mail server may overwrite arbitrary mail files.
Apple Mac Os X
Apple Iphone Os
Apple Watchos
Apple Ipados
383
VMScore
CVE-2017-17689
The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.
Microsoft Outlook 2016
Microsoft Outlook 2007
Microsoft Outlook 2013
Microsoft Outlook 2010
Horde Horde Imp -
Google Gmail -
9folders Nine -
Flipdogsolutions Maildroid -
R2mail2 R2mail2 -
Apple Mail -
Bloop Airmail -
Freron Mailmate -
Kde Kmail -
Kde Trojita -
Gnome Evolution -
Mozilla Thunderbird -
Ibm Notes -
Emclient Emclient -
Postbox-inc Postbox -
Ritlabs The Bat -
1 Github repository
1 Article
445
VMScore
CVE-2011-0207
The MobileMe component in Apple Mac OS X prior to 10.6.8 uses a cleartext HTTP session for the Mail application to read e-mail aliases, which allows remote malicious users to obtain potentially sensitive alias information by sniffing the network.
Apple Mac Os X 10.6.7
Apple Mac Os X 10.6.3
Apple Mac Os X 10.6.6
Apple Mac Os X 10.6.1
Apple Mac Os X 10.6.0
Apple Mac Os X 10.6.2
Apple Mac Os X 10.6.4
Apple Mac Os X 10.6.5
Apple Mac Os X Server 10.6.3
Apple Mac Os X Server 10.6.6
Apple Mac Os X Server 10.6.4
Apple Mac Os X Server 10.6.7
Apple Mac Os X Server 10.6.5
Apple Mac Os X Server 10.6.1
Apple Mac Os X Server 10.6.2
Apple Mac Os X Server 10.6.0
445
VMScore
CVE-2013-5182
Mail in Apple Mac OS X prior to 10.9 allows remote malicious users to spoof the existence of a cryptographic signature for an e-mail message by using the multipart/signed content type within an unsigned message.
Apple Mac Os X 10.8.3
Apple Mac Os X
Apple Mac Os X 10.8.4
Apple Mac Os X 10.8.1
Apple Mac Os X 10.8.0
Apple Mac Os X 10.8.5
Apple Mac Os X 10.8.2
445
VMScore
CVE-2009-2841
The HTMLMediaElement::loadResource function in html/HTMLMediaElement.cpp in WebCore in WebKit before r49480, as used in Apple Safari prior to 4.0.4 on Mac OS X, does not perform the expected callbacks for HTML 5 media elements that have external URLs for media resources, which al...
Apple Safari
Apple Safari 0.8
Apple Safari 0.9
Apple Safari 1.0
Apple Safari 1.0.0
Apple Safari 1.0.0b1
Apple Safari 1.0.0b2
Apple Safari 1.0.1
Apple Safari 1.0.2
Apple Safari 1.0.3
Apple Safari 1.1.0
Apple Safari 1.1.1
Apple Safari 1.2
Apple Safari 1.2.0
Apple Safari 1.2.1
Apple Safari 1.2.2
Apple Safari 1.2.3
Apple Safari 1.2.4
Apple Safari 1.2.5
Apple Safari 1.3
Apple Safari 1.3.0
Apple Safari 1.3.1
445
VMScore
CVE-2014-4366
Mail in Apple iOS prior to 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote malicious users to obtain sensitive cleartext information by sniffing the network.
Apple Iphone Os 7.0.4
Apple Iphone Os 7.1.1
Apple Iphone Os
Apple Iphone Os 7.0.5
Apple Iphone Os 7.1
Apple Iphone Os 7.0.6
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0
Apple Iphone Os 7.0.3
187
VMScore
CVE-2011-3257
The Data Access component in Apple iOS prior to 5 does not properly handle the existence of multiple user accounts on the same mail server, which allows local users to bypass intended access restrictions in opportunistic circumstances by leveraging a different account's cook...
Apple Iphone Os 4.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.5
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.2.5
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.0
Apple Iphone Os 3.2.2
454
VMScore
CVE-2005-2744
Buffer overflow in QuickDraw Manager for Apple OS X 10.3.9 and 10.4.2, as used by applications such as Safari, Mail, and Finder, allows remote malicious users to execute arbitrary code via a crafted PICT file.
Apple Mac Os X Server 10.3.2
Apple Mac Os X Server 10.3.7
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X 10.4.1
Apple Mac Os X Server 10.4.2
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.4.1
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.3.7
Apple Mac Os X Server 10.4
Apple Mac Os X 10.3.6
Apple Mac Os X Server 10.3
Apple Mac Os X Server 10.3.8
Apple Mac Os X 10.4
Apple Mac Os X Server 10.3.9
Apple Mac Os X 10.3.8
Apple Mac Os X Server 10.3.1
Apple Mac Os X 10.3.9
Apple Mac Os X 10.3.4
668
VMScore
CVE-2004-1088
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote malicious users to send mail without authentication by replaying authentication information.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
515
VMScore
CVE-2009-0961
The Mail component in Apple iPhone OS 1.0 up to and including 2.2.1 and iPhone OS for iPod touch 1.1 up to and including 2.2.1 dismisses the call approval dialog when another alert appears, which might allow remote malicious users to force the iPhone to place a call without user ...
Apple Iphone Os 1.0.0
Apple Iphone Os 1.0.1
Apple Iphone Os 1.0.2
Apple Iphone Os 1.1.0
Apple Iphone Os 1.1.1
Apple Iphone Os 1.1.2
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.4
Apple Iphone Os 1.1.5
Apple Iphone Os 2.0
Apple Iphone Os 2.0.0
Apple Iphone Os 2.0.1
Apple Iphone Os 2.0.2
Apple Iphone Os 2.1
Apple Iphone Os 2.1.1
Apple Iphone Os 2.2
Apple Iphone Os 2.2.1
Apple Iphone Os
Apple Ipod Touch
3 EDB exploits
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »