Vulnerability Name:

CVE-2004-0383 (CCN-15768)

Assigned:2004-04-06
Published:2004-04-06
Updated:2017-07-11
Summary:Unknown vulnerability in Mail for Mac OS X 10.3.3 and 10.2.8, with unknown impact, related to "the handling of HTML-formatted email."
CVSS v3 Severity:9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Other
References:Source: CCN
Type: BugTraq Mailing List, Tue Apr 06 2004 - 13:09:46 CDT
[product-security@apple.com: APPLE-SA-2004-04-05 Security Update 2004-04-05]]

Source: MITRE
Type: CNA
CVE-2004-0383

Source: CCN
Type: AppleCare Knowledge Base Document 61798
Apple Security Update 2004-04-06

Source: CONFIRM
Type: UNKNOWN
http://docs.info.apple.com/article.html?artnum=61798

Source: CONFIRM
Type: UNKNOWN
http://lists.apple.com/mhonarc/security-announce/msg00047.html

Source: CCN
Type: OSVDB ID: 15021
Apple Mac OS X Mail Unspecified HTML Email Issue

Source: CCN
Type: BID-10063
Apple Mac OS X Mail Undisclosed HTML Handling Vulnerability

Source: XF
Type: UNKNOWN
macos-mail(15768)

Source: XF
Type: UNKNOWN
macos-mail-unknown(15768)

Vulnerable Configuration:Configuration 1:
  • cpe:/o:apple:mac_os_x:10.2.8:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.3.3:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:apple:mac_os_x:10.2.8:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.3.3:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    apple mac os x 10.2.8
    apple mac os x 10.3.3
    apple mac os x 10.2.8
    apple mac os x 10.3.3