Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

KDE Konqueror Cross-Domain Frame Loading Vulnerability

Konqueror reported prone to a cross-domain frame loading vulnerability. It is reported that if the name of a frame rendered in a target site is known, then an attacker may potentially render arbitrary HTML in the frame of the target site.

An attacker may exploit this vulnerability to spoof an interface of a trusted web site.

All versions of KDE up to KDE 3.2.3 are vulnerable to this issue.







 

Privacy Statement
Copyright 2008, SecurityFocus