• Sign in

CVE-2003-1413

    CVE-2003-1413  
Description parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using ".." sequences in the filename parameter and comparing the resulting error messages.
Impact
  CVSS v2 : 4.3 MEDIUM  
Type
  CWE-22  
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:N/I:N/A:P
Quick linksCVE, NVD, CERT, Metasploit, Exploit-db, Fulldisc, Bugtraq, Microsoft, Red Hat, Debian, GitHub code/issues, Google
References
http://securityreason.com/securityalert/3260
http://www.securityfocus.com/archive/1/313517
http://www.securityfocus.com/bid/6992
https://exchange.xforce.ibmcloud.com/vulnerabilities/11445
  • FAQ
  • Terms of service
  • Privacy policy