Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Absolute path traversal vulnerability in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 through 2012, when Internet Explorer is used, might allow remote attackers to read arbitrary files in ZIP archives via a full pathname in the URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Intuit QuickBooks ‘HelpAsyncPluggableProtocol.dll’ 任意文件读取漏洞
Vulnerability Description
Intuit QuickBooks 2009至2012版本中的HelpAsyncPluggableProtocol.dll中的intu-help-qb (也称Intuit Help System Async Pluggable Protocol) handlers中存在绝对路径遍历漏洞。当使用Internet Explorer时,远程攻击者可利用该漏洞借助URI中的全路径名在ZIP压缩包中读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A