Описание
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
Ссылки
- Issue TrackingThird Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 18.12.0 (исключая)
cpe:2.3:a:kde:kde_applications:*:*:*:*:*:*:*:*
EPSS
Процентиль: 50%
0.00265
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
CVSS3: 7.5
ubuntu
около 7 лет назад
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
CVSS3: 7.5
debian
около 7 лет назад
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows ...
CVSS3: 7.5
github
больше 3 лет назад
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
EPSS
Процентиль: 50%
0.00265
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-200