First published: Wed Mar 21 2007(Updated: )
The FTP protocol implementation in Konqueror 3.5.5 allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
KDE Konqueror | =3.5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1564 has a medium severity level due to the potential for unauthorized access and information exposure.
To fix CVE-2007-1564, users should upgrade to a version of Konqueror that is not affected, or apply any available patches.
The vulnerability affects the Konqueror version 3.5.5 on systems running the KDE software.
CVE-2007-1564 can facilitate attacks such as forced proxy connections, port scanning, and information leakage.
While CVE-2007-1564 is an older vulnerability, systems still running the affected versions remain at risk.