Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtain sensitive configuration information via an HTTP request.
Advisories
Source ID Title
EUVD EUVD EUVD-2016-2871 Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtain sensitive configuration information via an HTTP request.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 11 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00476}

epss

{'score': 0.00283}


cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2024-08-05T23:10:39.781Z

Reserved: 2016-01-13T00:00:00

Link: CVE-2016-1776

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-03-24T01:59:43.780

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-1776

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.