This script is Copyright (C) 2005-2015 Tenable Network Security, Inc.
The remote host contains an application that is affected by a local
code execution flaw.
According to its banner, the version of Apple iTunes for Windows on
the remote host launches a helper application by searching for it
through various system paths. By placing a malicious program in a
system path, an attacker with local access can exploit this behavior
to execute code before the helper application and thereby gain
See also :
Upgrade to Apple iTunes 6 for Windows or later.
Risk factor :
High / CVSS Base Score : 7.2
CVSS Temporal Score : 6.3
Public Exploit Available : true
Family: Peer-To-Peer File Sharing
Nessus Plugin ID: 20218 (itunes_code_exec.nasl)
Bugtraq ID: 15446
CVE ID: CVE-2005-2938
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.