Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pfc7-m6xf-fmg6

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.

KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.

EPSS

Процентиль: 80%
0.01525
Низкий

Связанные уязвимости

ubuntu
почти 22 года назад

Описание отсутствует

redhat
почти 22 года назад

KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.

nvd
почти 22 года назад

KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.

debian
почти 22 года назад

KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication ...

fstec
почти 22 года назад

Уязвимость операционной системы Red Hat Linux, позволяющая удаленному злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 80%
0.01525
Низкий