parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to obtain the physical path of the server's installation path via a NULL file parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-03-06 21:00
Updated : 2016-10-17 19:28
NVD link : CVE-2003-0051
Mitre link : CVE-2003-0051
JSON object : View
CWE
Products Affected
apple
- darwin_streaming_server
- quicktime_streaming_server