<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:52:01.012894+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2007-avi-234</id>
    <title>certa-2007-avi-234 — Plusieurs vulnérabilités ont été identifiées : elles concernent le
système d'exploitation Mac OS X. L'exploitation de c…</title>
    <updated>2026-10-03T21:52:01.028348+00:00</updated>
    <content>certa-2007-avi-234</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2007-avi-234"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-133523</id>
    <title>EUVD-2026-133523</title>
    <updated>2026-10-03T21:52:01.028397+00:00</updated>
    <content>EUVD-2026-133523</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-133523"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2007-1558</id>
    <title>fkie_cve-2007-1558</title>
    <updated>2026-10-03T21:52:01.028432+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2007-1558"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-jmh6-7c53-fg26</id>
    <title>GHSA-jmh6-7c53-fg26</title>
    <updated>2026-10-03T21:52:01.028476+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-jmh6-7c53-fg26"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2007-1558</id>
    <title>gsd-2007-1558</title>
    <updated>2026-10-03T21:52:01.028493+00:00</updated>
    <content>gsd-2007-1558</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2007-1558"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2007-000295</id>
    <title>jvndb-2007-000295</title>
    <updated>2026-10-03T21:52:01.028505+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>POP3 is a protocol for receiving email from mail servers. APOP is an authentication mechanism used by the POP3 protocol.

It is reported that APOP passwords could be recovered by third parties.

In its successful attack, the attacker spoofs itself as the mail server, provides challenge strings to the client, and collects the responses from the client. The attacker should repeat this process for a certain period of time without alerting the user of the attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2007-000295"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10686-1</id>
    <title>openSUSE-SU-2024:10686-1 — claws-mail-4.0.0-2.5 on GA media</title>
    <updated>2026-10-03T21:52:01.028522+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>claws-mail-4.0.0-2.5 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10686-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2007:0344</id>
    <title>RHSA-2007:0344 — Red Hat Security Advisory: evolution-data-server security update</title>
    <updated>2026-10-03T21:52:01.028539+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>fetchmail/mutt/evolution/...: APOP password disclosure vulnerability</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2007:0344"/>
  </entry>
</feed>
