First published: Tue Jul 17 2007(Updated: )
konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
KDE Konqueror | =3.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3820 has a moderate severity level due to its potential to allow spoofing of URIs.
To fix CVE-2007-3820, upgrade to a later version of Konqueror beyond 3.5.7 where the vulnerability is patched.
The impact of CVE-2007-3820 allows attackers to manipulate the address bar, potentially misleading users about the origin of web content.
CVE-2007-3820 affects Konqueror version 3.5.7 specifically.
Yes, CVE-2007-3820 can be exploited remotely by attackers through specially crafted URIs.