Skip to content
Noroxi

freron records

4 published records for vendor freron.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18
  2. 19
  3. 20

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

4 records
  • MailMate before 1.11.3 mishandles a suspicious HTML/MIME structure in a signed/encrypted email.

    HighCVSS 7.5No exploitEPSS 2%

    freron · mailmateFeb 11, 2019

  • The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration,

    MediumCVSS 5.9No exploitEPSS 6%

    apple · mailMay 16, 2018

  • The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration,

    MediumCVSS 5.9No exploitEPSS 4%

    9folders · nineMay 16, 2018

  • MailMate before 1.11 automatically imported S/MIME certificates and thereby silently replaced existing ones.

    MediumCVSS 5.9No exploitEPSS 0%

    freron · mailmateAug 20, 2020