Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
darwin streaming server vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2003-1413
parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote malicious users to determine the existence of arbitrary files by using ".." sequences in the filename parameter and comparing the resulting error messages.
Apple Darwin Streaming Server 4.1.2
Apple Quicktime Streaming Server 4.1.1
5
CVSSv2
CVE-2004-0169
QuickTime Streaming Server in MacOS X 10.2.8 and 10.3.2 allows remote malicious users to cause a denial of service (crash) via DESCRIBE requests with long User-Agent fields, which causes an Assert error to be triggered in the BufferIsFull function.
Apple Darwin Streaming Server 4.1.3
10
CVSSv2
CVE-2003-0421
Apple QuickTime / Darwin Streaming Server prior to 4.1.3f allows remote malicious users to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.
Apple Darwin Streaming Server 4.1.3
5
CVSSv2
CVE-2003-0422
Apple QuickTime / Darwin Streaming Server prior to 4.1.3f allows remote malicious users to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.
Apple Darwin Streaming Server 4.1.3
5
CVSSv2
CVE-2003-0423
parse_xml.cgi in Apple QuickTime / Darwin Streaming Server prior to 4.1.3g allows remote malicious users to obtain the source code for parseable files via the filename parameter.
Apple Darwin Streaming Server 4.1.3
5
CVSSv2
CVE-2003-0424
Apple QuickTime / Darwin Streaming Server prior to 4.1.3f allows remote malicious users to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.
Apple Darwin Streaming Server 4.1.3
5
CVSSv2
CVE-2003-0425
Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server prior to 4.1.3f allows remote malicious users to read arbitrary files via a ... (triple dot) in an HTTP request.
Apple Darwin Streaming Server 4.1.3
10
CVSSv2
CVE-2003-0426
The installation of Apple QuickTime / Darwin Streaming Server prior to 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote malicious users to set the administrator password and gain privileges before the real administrator.
Apple Darwin Streaming Server 4.1.3
7.5
CVSSv2
CVE-2003-0055
Buffer overflow in the MP3 broadcasting module of Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote malicious users to execute arbitrary code via a long filename.
Apple Quicktime Darwin Mp3 Broadcaster
5
CVSSv2
CVE-2004-1084
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote malicious users to read files and resource fork content via HTTP requests to certain special file names related to multiple data streams in HFS+, which bypass Apache file handles.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 4.1.3
Apple Darwin Streaming Server 5.0.1
Apple Mac Os X 10.2
Apple Mac Os X 10.2.1
Apple Mac Os X 10.2.2
Apple Mac Os X 10.3
Apple Mac Os X 10.3.1
Apple Mac Os X Server 10.2.1
Apple Mac Os X Server 10.2.2
Apple Mac Os X Server 10.3.1
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X 10.3.6
Apple Mac Os X Server 10.2
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.8
Apple Mac Os X Server 10.3
Apple Mac Os X 10.2.5
Apple Mac Os X 10.2.6
Apple Mac Os X 10.3.4
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4040
privilege escalation
CVE-2024-4112
CVE-2024-32872
man-in-the-middle
CVE-2024-32788
bypass
CVE-2024-3400
CVE-2024-28976
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »