intuit kayıtları
intuit üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
- CWE-319 Cleartext Transmission of Sensitive Information1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWEBug bounty kapsamı
Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.
Tüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
48Planlayın | CVE-2007-6387Kavram kanıtı | Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Vantage Linguistics Ansintuit · bookkeeping · CWE-119 | Kritik9,3 | — | %38,0 | 14 Ara 2007 |
39İzleyin | CVE-2007-0322İstismar yok | Multiple stack-based buffer overflows in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote attackers to execute arintuit · quickbooks · CWE-119 | Kritik9,3 | — | %6,0 | 5 Eyl 2007 |
39İzleyin | CVE-2007-4471İstismar yok | Multiple unspecified vulnerabilities in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote attackers to create or ointuit · quickbooks · CWE-22 | Kritik9,3 | — | %5,2 | 5 Eyl 2007 |
30İzleyin | CVE-2018-11338İstismar yok | Intuit Lacerte 2017 for Windows in a client/server environment transfers the entire customer list in cleartext over SMB, which allows attackintuit · lacerte · CWE-319 | Yüksek7,5 | — | %0,9 | 31 Tem 2018 |
28İzleyin | CVE-2012-2418İstismar yok | Heap-based buffer overflow in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll intuit · quickbooks · CWE-119 | Orta6,8 | — | %3,2 | 25 Nis 2012 |
28İzleyin | CVE-2018-3854İstismar yok | An exploitable information disclosure vulnerability exists in the password protection functionality of Quicken Deluxe 2018 for Mac version 5intuit · quicken 2018 · CWE-200 | Yüksek7,1 | — | %0,4 | 3 Ara 2018 |
27İzleyin | CVE-2010-5198İstismar yok | Multiple untrusted search path vulnerabilities in Intuit QuickBooks 2010 allow local users to gain privileges via a Trojan horse (1) dbicudtintuit · quickbooks | Orta6,9 | — | %0,3 | 6 Eyl 2012 |
23İzleyin | CVE-2018-14833İstismar yok | Intuit Lacerte 2017 has Incorrect Access Control.intuit · lacerte · CWE-284 | Orta5,9 | — | %1,2 | 9 Tem 2019 |
18İzleyin | CVE-2001-0465İstismar yok | TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow intuit · turbo tax | Orta4,6 | — | %0,3 | 18 Haz 2001 |
11İzleyin | CVE-2012-2422İstismar yok | Intuit QuickBooks 2009 through 2012 might allow remote attackers to obtain pathname information via the qbwc://docontrol/GetCompanyFile funcintuit · quickbooks · CWE-200 | Düşük2,9 | — | %1,1 | 25 Nis 2012 |
7İzleyin | CVE-2012-2425İstismar yok | The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 throintuit · quickbooks · CWE-20 | Düşük1,8 | — | %1,3 | 25 Nis 2012 |
7İzleyin | CVE-2012-2420İstismar yok | The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 throintuit · quickbooks · CWE-200 | Düşük1,8 | — | %1,3 | 25 Nis 2012 |
7İzleyin | CVE-2012-2424İstismar yok | The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 throintuit · quickbooks | Düşük1,8 | — | %1,2 | 25 Nis 2012 |
7İzleyin | CVE-2012-2423İstismar yok | The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 throintuit · quickbooks · CWE-200 | Düşük1,8 | — | %1,1 | 25 Nis 2012 |
7İzleyin | CVE-2012-2419İstismar yok | Memory leak in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit Quickintuit · quickbooks · CWE-399 | Düşük1,8 | — | %1,0 | 25 Nis 2012 |
7İzleyin | CVE-2012-2421İstismar yok | Absolute path traversal vulnerability in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggablePrintuit · quickbooks · CWE-22 | Düşük1,8 | — | %0,8 | 25 Nis 2012 |
- CVE-2007-638748Planlayın
Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Vantage Linguistics Ans
KritikCVSS 9,3Kavram kanıtıEPSS %38intuit · bookkeeping14 Ara 2007
- CVE-2007-032239İzleyin
Multiple stack-based buffer overflows in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote attackers to execute ar
KritikCVSS 9,3İstismar yokEPSS %6intuit · quickbooks5 Eyl 2007
- CVE-2007-447139İzleyin
Multiple unspecified vulnerabilities in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote attackers to create or o
KritikCVSS 9,3İstismar yokEPSS %5intuit · quickbooks5 Eyl 2007
- CVE-2018-1133830İzleyin
Intuit Lacerte 2017 for Windows in a client/server environment transfers the entire customer list in cleartext over SMB, which allows attack
YüksekCVSS 7,5İstismar yokEPSS %1intuit · lacerte31 Tem 2018
- CVE-2012-241828İzleyin
Heap-based buffer overflow in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll
OrtaCVSS 6,8İstismar yokEPSS %3intuit · quickbooks25 Nis 2012
- CVE-2018-385428İzleyin
An exploitable information disclosure vulnerability exists in the password protection functionality of Quicken Deluxe 2018 for Mac version 5
YüksekCVSS 7,1İstismar yokEPSS %0intuit · quicken 20183 Ara 2018
- CVE-2010-519827İzleyin
Multiple untrusted search path vulnerabilities in Intuit QuickBooks 2010 allow local users to gain privileges via a Trojan horse (1) dbicudt
OrtaCVSS 6,9İstismar yokEPSS %0intuit · quickbooks6 Eyl 2012
- CVE-2018-1483323İzleyin
Intuit Lacerte 2017 has Incorrect Access Control.
OrtaCVSS 5,9İstismar yokEPSS %1intuit · lacerte9 Tem 2019
- CVE-2001-046518İzleyin
TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow
OrtaCVSS 4,6İstismar yokEPSS %0intuit · turbo tax18 Haz 2001
- CVE-2012-242211İzleyin
Intuit QuickBooks 2009 through 2012 might allow remote attackers to obtain pathname information via the qbwc://docontrol/GetCompanyFile func
DüşükCVSS 2,9İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24257İzleyin
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 thro
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24207İzleyin
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 thro
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24247İzleyin
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 thro
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24237İzleyin
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 thro
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24197İzleyin
Memory leak in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit Quick
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012
- CVE-2012-24217İzleyin
Absolute path traversal vulnerability in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggablePr
DüşükCVSS 1,8İstismar yokEPSS %1intuit · quickbooks25 Nis 2012