CVE Database
/

CVE-2004-0746

Back to search

CVE-2004-0746

Published: Sep 14, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.

VendorProductVersions

n/a

n/a

affected
n/a

References

12341
third-party-advisory
x_refsource_SECUNIA
kde-konqueror-cookie-set(17063)
vdb-entry
x_refsource_XF
CLA-2004:864
vendor-advisory
x_refsource_CONECTIVA
MDKSA-2004:086
vendor-advisory
x_refsource_MANDRAKE
10991
vdb-entry
x_refsource_BID
oval:org.mitre.oval:def:11281
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now