Unrated severityNVD Advisory· Published Sep 27, 2007· Updated Jun 16, 2026
CVE-2007-3754
CVE-2007-3754
Description
Mail in Apple iPhone 1.1.1, when using SSL, does not warn the user when the mail server changes or is not trusted, which might allow remote attackers to steal credentials and read email via a man-in-the-middle (MITM) attack.
Affected products
4- cpe:2.3:h:apple:iphone:1.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:o:apple:iphone_os:1.0.2:*:*:*:*:*:*:*
- Range: 1.1.1
Patches
Vulnerability mechanics
References
8- lists.apple.com/archives/security-announce/2007/Sep/msg00001.htmlnvdPatch
- docs.info.apple.com/article.htmlnvd
- osvdb.org/38537nvd
- secunia.com/advisories/26983nvd
- securitytracker.com/idnvd
- www.securityfocus.com/bid/25856nvd
- www.vupen.com/english/advisories/2007/3287nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/36845nvd
News mentions
0No linked articles in our index yet.