Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2007-3143

Опубликовано: 06 июн. 2007
Источник: redhat
CVSS2: 2.6
EPSS Низкий

Описание

Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.

Отчет

Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4kdebaseWill not fix
Red Hat Enterprise Linux 5kdebaseWill not fix
Red Hat Enterprise Linux 6kdebaseWill not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-222
https://bugzilla.redhat.com/show_bug.cgi?id=252169konqueror visual hostname truncation in HTTP authentication dialog

EPSS

Процентиль: 68%
0.00592
Низкий

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
больше 18 лет назад

Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.

nvd
больше 18 лет назад

Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.

debian
больше 18 лет назад

Visual truncation vulnerability in Konqueror 3.5.5 allows remote attac ...

github
больше 3 лет назад

Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.

EPSS

Процентиль: 68%
0.00592
Низкий

2.6 Low

CVSS2