Description
mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
Remediation
References
Related Vulnerabilities
WordPress 3.8.x Same Origin Method Execution (SOME) Vulnerability (3.8 - 3.8.13)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-6112)
Oracle Application Server Other Vulnerability (CVE-2007-3859)
WordPress Plugin LifterLMS-WP LMS for eLearning, Online Courses, & Quizzes Security Bypass (3.34.5)