Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple darwin streaming server 4.1.3 vulnerabilities and exploits
(subscribe to this query)
890
VMScore
CVE-2007-0748
Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server prior to 5.5.5, allows remote malicious users to execute arbitrary code via multiple trackID values in a SETUP RTSP request.
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.2
Apple Darwin Streaming Server 5.5.4
Apple Darwin Streaming Server 4.1.3
890
VMScore
CVE-2007-0749
Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using Darwin Streaming Server prior to 5.5.5, allow remote malicious users to execute arbitrary code via a long (1) cmd or (2) server value in an RTSP request.
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.2
Apple Darwin Streaming Server 5.5.4
Apple Darwin Streaming Server 4.1.3
890
VMScore
CVE-2003-0421
Apple QuickTime / Darwin Streaming Server prior to 4.1.3f allows remote malicious users to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.
Apple Darwin Streaming Server 4.1.3
890
VMScore
CVE-2003-0426
The installation of Apple QuickTime / Darwin Streaming Server prior to 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote malicious users to set the administrator password and gain privileges before the real administrator.
Apple Darwin Streaming Server 4.1.3
755
VMScore
CVE-2003-1091
Integer overflow in MP3Broadcaster for Apple QuickTime/Darwin Streaming Server 4.1.3 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via malformed ID3 tags in MP3 files.
1 EDB exploit
668
VMScore
CVE-2004-1086
Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote malicious users to execute arbitrary code via a crafted PostScript input file.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
668
VMScore
CVE-2004-1088
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote malicious users to send mail without authentication by replaying authentication information.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
445
VMScore
CVE-2004-1123
Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote malicious users to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
445
VMScore
CVE-2004-1083
Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote malicious users to read .DS_Store files and files beginning with ".ht" using ...
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
445
VMScore
CVE-2004-1084
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote malicious users to read files and resource fork content via HTTP requests to certain special file names related to multiple data streams in HFS+, which bypass Apache file handles.
Apple Quicktime Streaming Server 4.1.1
Apple Darwin Streaming Server 5.0.1
Apple Darwin Streaming Server 4.1.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X 10.2.5
Apple Mac Os X Server 10.2.2
Apple Mac Os X 10.2.7
Apple Mac Os X 10.2.8
Apple Mac Os X Server 10.2.4
Apple Mac Os X 10.2.1
Apple Mac Os X Server 10.3.5
Apple Mac Os X 10.3.1
Apple Mac Os X 10.3.5
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.2.3
Apple Mac Os X 10.2.4
Apple Mac Os X Server 10.3.4
Apple Mac Os X 10.3.2
Apple Mac Os X 10.2.2
Apple Mac Os X Server 10.2.5
Apple Mac Os X 10.3.6
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5834
CVE-2024-30100
CVE-2024-4577
physical
dos
CVE-2024-30099
CVE-2024-27801
CVE-2024-32146
logic flaw
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »