CVE-2007-4225

6 documents6 sources
Severity
6.8MEDIUM
EPSS
2.0%
top 16.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 8
Latest updateMay 1

Description

Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http URI with a large amount of whitespace in the user/password portion.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

NVDkde/konqueror3.5.7

🔴Vulnerability Details

2
GHSA
GHSA-rm3p-fh82-w8mf: Visual truncation vulnerability in KDE Konqueror 32022-05-01
CVEList
CVE-2007-4225: Visual truncation vulnerability in KDE Konqueror 32007-08-08

📋Vendor Advisories

2
Ubuntu
KDE vulnerabilities2007-08-26
Red Hat
CVE-2007-4225: Visual truncation vulnerability in KDE Konqueror 3

💬Community

1
Bugzilla
CVE-2007-4224 URL spoof in address bar2007-08-10