Information Disclosure Vulnerability in Apple Mail.app on Mac OS X
CVE-2008-4491

Currently unrated

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
8 October 2008

Summary

Apple Mail.app version 3.5 on Mac OS X contains a vulnerability that results in the inadvertent storage of draft S/MIME email messages in plaintext on the email server. This occurs when the 'Store draft messages on the server' feature is enabled, allowing attackers and server administrators to access sensitive email contents. Consequently, the vulnerability poses a serious risk to user privacy, potentially leading to unauthorized viewing of confidential emails.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.