Apple QuickTime/Darwin Streaming Server Command Execution Vulnerability
Publish Date: 21 juillet 2015
Gravité: : Élevé
Identifiant(s) CVE: : CVE-2003-0050
Date du conseil: 21 juillet 2015
Description
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via shell metacharacters.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005983
Trend Micro Deep Security DPI Rule Name: 1005983 - Darwin Streaming Server Command Execution Vulnerability
Affected software and version:
- Apple Darwin Streaming Server 4.1.2
- Apple Quicktime Streaming Server 4.1.1