Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Apple QuickTime before 7.5 uses the url.dll!FileProtocolHandler handler for unrecognized URIs in qt:next attributes within SMIL text in video files, which sends these URIs to explorer.exe and thereby allows remote attackers to execute arbitrary programs, as originally demonstrated by crafted file: URLs.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple QuickTime Player file: URL 输入验证漏洞
Vulnerability Description
Apple QuickTime是一款非常流行的多媒体播放器。 QuickTime的7.5之前版本没有正确地处理file: URL,当用户在播放器中播放恶意的QuickTime内容时可能会启动任意应用程序和文件。
CVSS Information
N/A
Vulnerability Type
N/A