Vulnerability Details CVE-2003-0054
Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request to port 7070 with the script in an argument to the rtsp DESCRIBE method, which is inserted into a log file and executed when the log is viewed using a browser.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0054
-
cpe:2.3:a:apple:darwin_streaming_server:4.1.2
-
cpe:2.3:a:apple:quicktime_streaming_server:4.1.1