Improper Access Control in Apple OS X Server
CVE-2016-1776
5.3MEDIUM
What is CVE-2016-1776?
The Web Server component in Apple OS X Server prior to version 5.1 fails to properly restrict access to critical files such as .DS_Store and .htaccess. This vulnerability could allow remote attackers to retrieve sensitive configuration data through crafted HTTP requests, leading to potential information leakage and exploitation of server settings.