Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2004-10-20 04:00
Updated : 2017-10-11 01:29
NVD link : CVE-2004-0746
Mitre link : CVE-2004-0746
CVE.ORG link : CVE-2004-0746
JSON object : View
Products Affected
kde
- kde
- konqueror
mandrakesoft
- mandrake_linux
suse
- suse_linux
gentoo
- linux
CWE