Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-9604

KDE kmail before 5.5.2 and messagelib before 5.5.2, as distributed in KDE Applications before 17.04.2, do not ensure that a plugin's sign/encrypt action occurs during use of the Send Later feature, which allows remote attackers to obtain sensitive information by sniffing the network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.5%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2017-9604
  • Kde » Kmail » Version: 4.11.5
    cpe:2.3:a:kde:kmail:4.11.5
  • Kde » Kmail » Version: 4.4.0
    cpe:2.3:a:kde:kmail:4.4.0
  • Kde » Kmail » Version: 5.2.3
    cpe:2.3:a:kde:kmail:5.2.3
  • Kde » Kmail » Version: 5.3.0
    cpe:2.3:a:kde:kmail:5.3.0
  • Kde » Messagelib » Version: 5.5.1
    cpe:2.3:a:kde:messagelib:5.5.1
  • Kde » Kde » Version: 17.04
    cpe:2.3:o:kde:kde:17.04


Contact Us

Shodan ® - All rights reserved