First published: Fri Mar 07 2003(Updated: )
Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to insert arbitrary script via the filename parameter, which is inserted into an error message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Quicktime Streaming Server | =4.1.1 | |
Apple Darwin | =4.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.