<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 21:51:57 +0000</lastBuildDate>
    <item>
      <title>certa-2007-avi-234 — Plusieurs vulnérabilités ont été identifiées : elles concernent le
système d'exploitation Mac OS X. L'exploitation de c…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2007-avi-234</link>
      <description>certa-2007-avi-234</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2007-avi-234</guid>
    </item>
    <item>
      <title>EUVD-2026-133523</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-133523</link>
      <description>EUVD-2026-133523</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-133523</guid>
    </item>
    <item>
      <title>fkie_cve-2007-1558</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2007-1558</link>
      <description>&lt;p&gt;The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2007-1558</guid>
    </item>
    <item>
      <title>GHSA-jmh6-7c53-fg26</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jmh6-7c53-fg26</link>
      <description>&lt;p&gt;The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions.  NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jmh6-7c53-fg26</guid>
    </item>
    <item>
      <title>gsd-2007-1558</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2007-1558</link>
      <description>gsd-2007-1558</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2007-1558</guid>
    </item>
    <item>
      <title>jvndb-2007-000295</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2007-000295</link>
      <description>&lt;p&gt;POP3 is a protocol for receiving email from mail servers. APOP is an authentication mechanism used by the POP3 protocol.&#13;
&#13;
It is reported that APOP passwords could be recovered by third parties.&#13;
&#13;
In its successful attack, the attacker spoofs itself as the mail server, provides challenge strings to the client, and collects the responses from the client. The attacker should repeat this process for a certain period of time without alerting the user of the attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;POP3 is a protocol for receiving email from mail servers. APOP is an authentication mechanism used by the POP3 protocol.&#13;
&#13;
It is reported that APOP passwords could be recovered by third parties.&#13;
&#13;
In its successful attack, the attacker spoofs itself as the mail server, provides challenge strings to the client, and collects the responses from the client. The attacker should repeat this process for a certain period of time without alerting the user of the attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2007-000295</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10686-1 — claws-mail-4.0.0-2.5 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10686-1</link>
      <description>&lt;p&gt;claws-mail-4.0.0-2.5 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;claws-mail-4.0.0-2.5 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10686-1</guid>
    </item>
    <item>
      <title>RHSA-2007:0344 — Red Hat Security Advisory: evolution-data-server security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2007:0344</link>
      <description>&lt;p&gt;fetchmail/mutt/evolution/...: APOP password disclosure vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;fetchmail/mutt/evolution/...: APOP password disclosure vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2007:0344</guid>
    </item>
  </channel>
</rss>
