Authentication Bypass in Postfix on Apple Mac OS X 10.3.6
CVE-2004-1088

Currently unrated

Key Information:

Vendor
Apple
Vendor
CVE Published:
2 December 2004

Summary

The Postfix mail server on Apple Mac OS X 10.3.6 is vulnerable due to a flaw in the CRAM-MD5 authentication mechanism. This vulnerability allows remote attackers to bypass authentication and send email messages without proper credentials by replaying previously captured authentication data. Such unauthorized access can lead to spam propagation and potential misuse of the email server, compromising the integrity of communications.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.