Feed/CVE-2012-2421
CVE-2012-2421LOWCVSS 1.8

CVE-2012-2421

Published Apr 25, 2012·Updated Jun 16, 2026

NVD Description

Absolute path traversal vulnerability in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 through 2012, when Internet Explorer is used, might allow remote attackers to read arbitrary files in ZIP archives via a full pathname in the URI.

CVSS Vector

AV:A/AC:H/Au:N/C:P/I:N/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free