Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:CGI abuses
Title:HFS+ 'data fork' file access

The remote host seems to be running MacOS X or MacOS X Server.

There is a flaw in the remote web server which allows an attacker
to obtain the source code of any given file on the remote web
server by reading it through its data fork directly. An attacker
may exploit this flaw to obtain the source code of remote scripts.

Solution : install all the latest Apple Security Patches
Risk factor : High

Cross-Ref: BugTraq ID: 11802
Common Vulnerability Exposure (CVE) ID: CVE-2004-1089
Computer Incident Advisory Center Bulletin: P-049
XForce ISS Database: cyrus-kerberos-gain-access(18351)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1088
XForce ISS Database: postfix-crammd5-auth-replay(18353)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1087
XForce ISS Database: macos-terminal-secure-improper(18355)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1086
XForce ISS Database: macos-psnormalizer-bo(18354)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1085
XForce ISS Database: macos-hitoolbox-kiosk-dos(18352)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1084
XForce ISS Database: apache-hfs-obtain-info(18349)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1083
XForce ISS Database: apache-hfs-file-disclosure(18348)
Common Vulnerability Exposure (CVE) ID: CVE-2004-1081
XForce ISS Database: macos-appkit-obtain-info(18350)
CopyrightThis script is Copyright (C) 2004 Tenable Network Security

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2021 E-Soft Inc. All rights reserved.