← Back

CVE-2004-0746

nvd nist
Published: Oct 20, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.

Affected (27)

Products: Kde: Konqueror, Kde · Gentoo: Linux · Mandrakesoft: Mandrake Linux · +1 more
Show all products
2 products
Konqueror
Kde
1 product
Linux
1 product
Mandrake Linux
1 product
Suse Linux
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Kde
Version 3.0.1
Version 3.0.2
Version 3.0.3
Version 3.0.5
Version 3.0.5b
Version 3.0
Version 3.1.1
Version 3.1.2
Version 3.1.3
Version 3.1.5
Version 3.1
Version 3.2.1
Version 3.2.3
Configuration B
14 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.4
Kde
Version 3.1.3
Version 3.2
Mandrakesoft
Version 10.0
Version 10.0
Version 9.2
Version 9.2
Suse
Version 8.1
Version 8.2
Version 8
Version 9.0
Version 9.0
Version 9.0
Version 9.1

References (16)

Timeline

No history available yet.