Apple.QuickTime.qtl.File.XAS.Remote.Exploit

description-logoDescription

This indicates a command injection vulnerability in Apple QuickTime. It allows remote attackers to inject arbitrary commands via the qtnext parameter within QuickTime link (.qtl) files.

affected-products-logoAffected Products

Apple QuickTime versions 7.x

Impact logoImpact

System compromise, arbitrary command execution.

recomended-action-logoRecommended Actions

Currently we are not aware of any official fix for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-11 16.978