Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2004-10-19 21:00
Updated : 2017-10-10 18:29
NVD link : CVE-2004-0746
Mitre link : CVE-2004-0746
JSON object : View
CWE
Products Affected
mandrakesoft
- mandrake_linux
gentoo
- linux
kde
- konqueror
- kde
suse
- suse_linux