Security Advisory
CVE-2012-3719
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code via an e-mail message that triggers the loading of a third-party plugin.