cbcvebase.
CVE-2011-3444
published 2012-02-02

CVE-2011-3444: Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote…

PriorityP420medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
1.44%
70.4th percentile
Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network.

Affected

6 ranges
VendorProductVersion rangeFixed in
applemac_os_x<= 10.7.2
applemac_os_x
applemac_os_x
applemac_os_x_server<= 10.7.2
applemac_os_x_server
applemac_os_x_server
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.