Логотип exploitDog
bind:CVE-2004-0870
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2004-0870

Количество 3

Количество 3

nvd логотип

CVE-2004-0870

около 21 года назад

KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection."

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2004-0870

около 21 года назад

KDE Konqueror does not prevent cookies that are sent over an insecure ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-jc7r-7928-5hc3

больше 3 лет назад

KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-0870

KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection."

CVSS2: 5
1%
Низкий
около 21 года назад
debian логотип
CVE-2004-0870

KDE Konqueror does not prevent cookies that are sent over an insecure ...

CVSS2: 5
1%
Низкий
около 21 года назад
github логотип
GHSA-jc7r-7928-5hc3

KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection."

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу