CVE-2003-0424

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apple:darwin_streaming_server:4.1.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:44

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0040.html - Exploit, Vendor Advisory () http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0040.html - Exploit, Vendor Advisory
References () http://www.rapid7.com/advisories/R7-0015.html - () http://www.rapid7.com/advisories/R7-0015.html -

Information

Published : 2003-08-27 04:00

Updated : 2024-11-20 23:44


NVD link : CVE-2003-0424

Mitre link : CVE-2003-0424

CVE.ORG link : CVE-2003-0424


JSON object : View

Products Affected

apple

  • darwin_streaming_server