Описание
Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0421.
Уязвимые конфигурации
Конфигурация 1Версия до 4.1.3g (включая)
cpe:2.3:a:apple:darwin_streaming_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01806
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0421.
EPSS
Процентиль: 82%
0.01806
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other