CVE-2002-2326
The default configuration of Mail.app in Mac OS X 10.0 through 10.0.4 and 10.1 through 10.1.5 sends iDisk authentication credentials in cleartext when connecting to Mac.com, which could allow remote attackers to obtain passwords by sniffing network traffic.
Scoring
- CVSS base score
- 0.03
- EPSS probability
- 0.61%
- Published
- 2007-10-26
- Last modified
- 2026-03-16
Affected products
- n/a n/a