Show filters
210 Total Results
Displaying 101-110 of 210
Sort by:
Attacker Value
Unknown
CVE-2007-6591
Disclosure Date: December 28, 2007 (last updated October 04, 2023)
KDE Konqueror 3.5.5 and 3.95.00, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, even though these fields cannot be examined in the product, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site.
0
Attacker Value
Unknown
CVE-2007-5963
Disclosure Date: December 19, 2007 (last updated October 04, 2023)
Unspecified vulnerability in kdebase allows local users to cause a denial of service (KDM login inaccessible, or resource consumption) via unknown vectors.
0
Attacker Value
Unknown
CVE-2007-6000
Disclosure Date: November 15, 2007 (last updated October 04, 2023)
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.
0
Attacker Value
Unknown
CVE-2007-4569
Disclosure Date: September 21, 2007 (last updated October 04, 2023)
backend/session.c in KDM in KDE 3.3.0 through 3.5.7, when autologin is configured and "shutdown with password" is enabled, allows remote attackers to bypass the password requirement and login to arbitrary accounts via unspecified vectors.
0
Attacker Value
Unknown
CVE-2007-4941
Disclosure Date: September 18, 2007 (last updated October 04, 2023)
KMPlayer 2.9.3.1210 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a .avi file with certain large "indx truck size" and nEntriesInuse values.
0
Attacker Value
Unknown
CVE-2007-4229
Disclosure Date: August 08, 2007 (last updated October 04, 2023)
Unspecified vulnerability in KDE Konqueror 3.5.7 and earlier allows remote attackers to cause a denial of service (failed assertion and application crash) via certain malformed HTML, as demonstrated by a document containing TEXTAREA, BUTTON, BR, BDO, PRE, FRAMESET, and A tags. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2007-4225
Disclosure Date: August 08, 2007 (last updated October 04, 2023)
Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http URI with a large amount of whitespace in the user/password portion.
0
Attacker Value
Unknown
CVE-2007-4224
Disclosure Date: August 08, 2007 (last updated October 04, 2023)
KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar by calling setInterval with a small interval and changing the window.location property.
0
Attacker Value
Unknown
CVE-2007-3820
Disclosure Date: July 17, 2007 (last updated October 04, 2023)
konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.
0
Attacker Value
Unknown
CVE-2007-3143
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.
0