Description
Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2003-0871 | Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T02:05:12.647Z
Reserved: 2003-10-24T00:00:00.000Z
Link: CVE-2003-0881
No data.
Status : Deferred
Published: 2003-11-03T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2003-0881
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD