CVE Vulnerabilities

CVE-2003-0053

Published: Mar 07, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cross-site scripting (XSS) vulnerability in parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to insert arbitrary script via the filename parameter, which is inserted into an error message.

Affected Software

NameVendorStart VersionEnd Version
Darwin_streaming_serverApple4.1.2 (including)4.1.2 (including)
Quicktime_streaming_serverApple4.1.1 (including)4.1.1 (including)

References