Darwin Streaming Server
Apple · 27 CVEs
Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Ser…
Oct 20, 2007
parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary fi…
Oct 20, 2007
Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using…
May 13, 2007
Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows rem…
May 13, 2007
Apple Darwin Streaming Server 5.5 and earlier allows remote attackers to cause a denial of service (application crash)…
Jul 17, 2005
Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local u…
Apr 14, 2005
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authenticat…
Apr 14, 2005
Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which coul…
Apr 14, 2005
Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a craft…
Apr 14, 2005
Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-qui…
Apr 14, 2005
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP re…
Apr 14, 2005
Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ fi…
Apr 14, 2005
The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure t…
Apr 14, 2005
Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (ser…
Dec 5, 2004
QuickTime Streaming Server in MacOS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (crash) vi…
Sep 1, 2004
Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to exec…
Sep 1, 2004
Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and Qui…
Sep 1, 2004
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote…
Sep 1, 2004
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote…
Sep 1, 2004
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote…
Sep 1, 2004
Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) vi…
Jul 25, 2003
The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Se…
Jul 25, 2003
Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to…
Jul 25, 2003
Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts b…
Jul 25, 2003
parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source c…
Jul 25, 2003
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2003-1414 | Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Server 4.1.1 allows remote attackers to rea… | MEDIUM | 4.46% | Oct 20, 2007 |
| CVE-2003-1413 | parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using ".." sequences in the filen… | MEDIUM | 1.21% | Oct 20, 2007 |
| CVE-2007-0749 | Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, a… | HIGH | 6.49% | May 13, 2007 |
| CVE-2007-0748 | Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows remote attackers to execute arbitrary code… | HIGH | 6.49% | May 13, 2007 |
| CVE-2005-2195 | Apple Darwin Streaming Server 5.5 and earlier allows remote attackers to cause a denial of service (application crash) via a URL with a filename containing a .… | MEDIUM | 1.56% | Jul 17, 2005 |
| CVE-2004-1089 | Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users. | MEDIUM | 0.34% | Apr 14, 2005 |
| CVE-2004-1088 | Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication informat… | HIGH | 1.65% | Apr 14, 2005 |
| CVE-2004-1087 | Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could result in a false sense of security fo… | LOW | 0.35% | Apr 14, 2005 |
| CVE-2004-1086 | Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafted PostScript input file. | HIGH | 3.37% | Apr 14, 2005 |
| CVE-2004-1085 | Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-quit key combination, even when the system… | LOW | 0.34% | Apr 14, 2005 |
| CVE-2004-1084 | Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP requests to certain special file names rel… | MEDIUM | 1.64% | Apr 14, 2005 |
| CVE-2004-1083 | Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insens… | HIGH | 1.88% | Apr 14, 2005 |
| CVE-2004-1081 | The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure text input field, which allows local user… | LOW | 0.34% | Apr 14, 2005 |
| CVE-2004-1123 | Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a… | MEDIUM | 1.29% | Dec 5, 2004 |
| CVE-2004-0169 | QuickTime Streaming Server in MacOS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (crash) via DESCRIBE requests with long User-Agent… | MEDIUM | 3.47% | Sep 1, 2004 |
| CVE-2003-0054 | Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request to port 7… | HIGH | 2.34% | Sep 1, 2004 |
| CVE-2003-0053 | Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows rem… | MEDIUM | 1.82% | Sep 1, 2004 |
| CVE-2003-0052 | parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to list arbitrary directories. | MEDIUM | 1.36% | Sep 1, 2004 |
| CVE-2003-0051 | parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to obtain the physical path of… | MEDIUM | 2.06% | Sep 1, 2004 |
| CVE-2003-0050 | parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via… | HIGH | 68.86% | Sep 1, 2004 |
| CVE-2003-0502 | Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an… | HIGH | 3.43% | Jul 25, 2003 |
| CVE-2003-0426 | The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote a… | HIGH | 3.43% | Jul 25, 2003 |
| CVE-2003-0425 | Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple… | MEDIUM | 1.68% | Jul 25, 2003 |
| CVE-2003-0424 | Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2… | MEDIUM | 1.42% | Jul 25, 2003 |
| CVE-2003-0423 | parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename… | MEDIUM | 2.02% | Jul 25, 2003 |
Showing 1 to 25 of 27 CVEs