Mac OS X Server 10.1: Security Vulnerability With QuickTime Streaming Server Web Admin

The QuickTime Streaming Server web-based admin agent in Mac OS X Server 10.1 to 10.1.5 contains a potential vulnerability that could allow remote users to execute arbitrary code.
To avoid this vulnerability, you should disable the QTSS web-based admin.

If you are not actively administrating QTSS via the web-based admin, disabling it should not be an issue for you. But if you are actively using the web-based admin, you will need to use one of these two alternatives:

The following sections explain how to use either of these alternatives.


How to disable QTSS web-based admin


How to limit QTSS web-based admin access

Published Date: Oct 7, 2016