← Back

CVE-2002-2326

nvd nist
Published: Dec 31, 2002Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The default configuration of Mail.app in Mac OS X 10.0 through 10.0.4 and 10.1 through 10.1.5 sends iDisk authentication credentials in cleartext when connecting to Mac.com, which could allow remote attackers to obtain passwords by sniffing network traffic.

Affected (11)

Products: Apple: Mac Os X
1 product
Mac Os X
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 10.0.1
Version 10.0.2
Version 10.0.3
Version 10.0.4
Version 10.0
Version 10.1.1
Version 10.1.2
Version 10.1.3
Version 10.1.4
Version 10.1.5
Version 10.1

Related CWEs

Timeline

No history available yet.