|
KDE Konqueror SetInterval Function Address Bar URI Spoofing Vulnerability
KDE Konqueror is affected by a URI-spoofing vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker can exploit this issue to display arbitrary content while displaying the URL of a trusted website in the address bar. This may lead to a false sense of trust because the victim may be presented with a source URI of a trusted site while interacting with the attacker's malicious site. Konqueror 3.5.7 is vulnerable; other versions may also be affected. |
|
|
Privacy Statement |