PT-2007-5417 · Kde+1 · Kde Konqueror+1
Published
2007-08-08
·
Updated
2018-10-15
·
CVE-2007-4224
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
KDE Konqueror version 3.5.7
Description
The issue allows remote attackers to spoof the URL address bar. This is achieved by calling
setInterval with a small interval and changing the window.location property.Recommendations
For KDE Konqueror version 3.5.7, consider disabling the
setInterval function or restricting changes to the window.location property as a temporary workaround until a patch is available.Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Kde Konqueror
Red Hat