Unrated severityNVD Advisory· Published Dec 19, 2007· Updated Jun 16, 2026
CVE-2007-5855
CVE-2007-5855
Description
Mail in Apple Mac OS X 10.4.11 and 10.5.1, when an SMTP account has been set up using Account Assistant, can use plaintext authentication even when MD5 Challenge-Response authentication is available, which makes it easier for remote attackers to sniff account activity.
Affected products
3cpe:2.3:o:apple:mac_os_x:10.4.11:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:mac_os_x:10.4.11:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.1:*:*:*:*:*:*:*
- (no CPE)range: 10.4.11, 10.5.1
Patches
Vulnerability mechanics
References
8- www.us-cert.gov/cas/techalerts/TA07-352A.htmlnvdUS Government Resource
- docs.info.apple.com/article.htmlnvd
- lists.apple.com/archives/security-announce/2007/Dec/msg00002.htmlnvd
- secunia.com/advisories/28136nvd
- securitytracker.com/idnvd
- www.securityfocus.com/bid/26910nvd
- www.vupen.com/english/advisories/2007/4238nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/39104nvd
News mentions
0No linked articles in our index yet.