Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The signature verification routine in the Airmail GPG-PGP Plugin, versions 1.0 (9) and earlier, does not verify the status of the signature at all, which allows remote attackers to spoof arbitrary email signatures by crafting a signed email with an invalid signature. Also, it does not verify the validity of the signing key, which allows remote attackers to spoof arbitrary email signatures by crafting a key with a fake user ID (email address) and injecting it into the user's keyring.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bloop Airmail GPG-PGP Plugin 数据伪造问题漏洞
Vulnerability Description
Bloop Airmail是意大利Bloop公司的一款电子邮件应用程序。GPG-PGP Plugin是其中的一个加密组件。 Bloop Airmail GPG-PGP Plugin 1.0 (9)及之前版本中存在数据伪造问题漏洞。该漏洞源于网络系统或产品未充分验证数据的来源或真实性。攻击者可利用伪造的数据进行攻击。
CVSS Information
N/A
Vulnerability Type
N/A