This script is Copyright (C) 2005-2014 Tenable Network Security, Inc.
The remote host contains an application that is affected by a local
code execution flaw.
According to its banner, the version of iTunes for Windows on the
remote host launches a helper application by searching for it through
various system paths. By placing a malicious program in a system path,
an attacker with local access can exploit this behavior to execute
code before the helper application and thereby gain privileges.
See also :
Upgrade to iTunes 6 for Windows or later.
Risk factor :
High / CVSS Base Score : 7.2
CVSS Temporal Score : 6.3
Public Exploit Available : true
Family: Peer-To-Peer File Sharing
Nessus Plugin ID: 20218 (itunes_code_exec.nasl)
Bugtraq ID: 15446
CVE ID: CVE-2005-2938
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.