CVE-2007-3820

7 documents6 sources
Severity
2.6LOW
EPSS
1.2%
top 21.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 17
Latest updateMay 1

Description

konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.

CVSS vector

AV:N/AC:H/C:N/I:P/A:NExploitability: 4.9 | Impact: 2.9

Affected Packages1 packages

NVDkde/konqueror3.5.7

🔴Vulnerability Details

2
GHSA
GHSA-7mxv-fq9j-x6mx: konqueror/konq_combo2022-05-01
CVEList
CVE-2007-3820: konqueror/konq_combo2007-07-17

📋Vendor Advisories

2
Ubuntu
KDE vulnerabilities2007-08-26
Red Hat
Spoofing of URI possible in Konqueror's address bar2007-07-14

💬Community

2
Bugzilla
CVE-2007-4224 URL spoof in address bar2007-08-10
Bugzilla
CVE-2007-3820 Spoofing of URI possible in Konqueror's address bar2007-07-17