Vulnerability   
Search   
    Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.15927
Category:CGI abuses
Title:HFS+ 'data fork' file access
Summary:NOSUMMARY
Description:Description:

The remote host seems to be running MacOS X or MacOS X Server.

There is a flaw in the remote web server which allows an attacker
to obtain the source code of any given file on the remote web
server by reading it through its data fork directly. An attacker
may exploit this flaw to obtain the source code of remote scripts.

Solution : install all the latest Apple Security Patches
Risk factor : High

Cross-Ref: BugTraq ID: 11802
Common Vulnerability Exposure (CVE) ID: CVE-2004-1089
http://lists.apple.com/archives/security-announce/2004/Dec/msg00000.html
http://www.securityfocus.com/bid/11802
Computer Incident Advisory Center Bulletin: P-049
http://www.ciac.org/ciac/bulletins/p-049.shtml
http://secunia.com/advisories/13362/
XForce ISS Database: cyrus-kerberos-gain-access(18351)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18351
Common Vulnerability Exposure (CVE) ID: CVE-2004-1088
XForce ISS Database: postfix-crammd5-auth-replay(18353)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18353
Common Vulnerability Exposure (CVE) ID: CVE-2004-1087
XForce ISS Database: macos-terminal-secure-improper(18355)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18355
Common Vulnerability Exposure (CVE) ID: CVE-2004-1086
XForce ISS Database: macos-psnormalizer-bo(18354)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18354
Common Vulnerability Exposure (CVE) ID: CVE-2004-1085
XForce ISS Database: macos-hitoolbox-kiosk-dos(18352)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18352
Common Vulnerability Exposure (CVE) ID: CVE-2004-1084
http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html
XForce ISS Database: apache-hfs-obtain-info(18349)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18349
Common Vulnerability Exposure (CVE) ID: CVE-2004-1083
XForce ISS Database: apache-hfs-file-disclosure(18348)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18348
Common Vulnerability Exposure (CVE) ID: CVE-2004-1081
XForce ISS Database: macos-appkit-obtain-info(18350)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18350
CopyrightThis script is Copyright (C) 2004 Tenable Network Security

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.