← Back

Darwin Streaming Server

darwin_streaming_server

Vendor: Apple • 27 CVEs

CVEs (27)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
1Darwin Streaming Server
Apr 16, 2026
Aug 27, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.
1Apple
1Darwin Streaming Server
Apr 16, 2026
Aug 27, 2003
N/A· v4
N/A· v3
10.0 HIGH· v2
Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE...Show more
Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.Show less
1Apple
2Darwin Streaming Server
Quicktime Streaming Server
Apr 16, 2026
Mar 7, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request to port 7070 with the script in an argument to the rtsp DESCRIBE metho...Show more
Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request to port 7070 with the script in an argument to the rtsp DESCRIBE method, which is inserted into a log file and executed when the log is viewed using a browser.Show less
1Apple
2Darwin Streaming Server
Quicktime Streaming Server
Apr 16, 2026
Mar 7, 2003
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to insert arbitrary script via the filename par...Show more
Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to insert arbitrary script via the filename parameter, which is inserted into an error message.Show less
1Apple
2Darwin Streaming Server
Quicktime Streaming Server
Apr 16, 2026
Mar 7, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to list arbitrary directories.
1Apple
2Darwin Streaming Server
Quicktime Streaming Server
Apr 16, 2026
Mar 7, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to obtain the physical path of the server's installation path via a NULL file parameter.
1Apple
2Darwin Streaming Server
Quicktime Streaming Server
Apr 16, 2026
Mar 7, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via shell metacharacters.