The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2003-07-25T04:00:00

Updated: 2024-08-08T01:50:48.199Z

Reserved: 2003-06-11T00:00:00

Link: CVE-2003-0426

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2003-08-27T04:00:00.000

Modified: 2008-09-05T20:34:17.503

Link: CVE-2003-0426

cve-icon Redhat

No data.