Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2004-10-20 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-0746
Mitre link : CVE-2004-0746
CVE.ORG link : CVE-2004-0746
JSON object : View
Products Affected
kde
- konqueror
- kde
gentoo
- linux
mandrakesoft
- mandrake_linux
suse
- suse_linux
CWE