Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The cross-site scripting protection for Konqueror in KDE 2.2.2 and 3.0 through 3.0.3 does not properly initialize the domains on sub-frames and sub-iframes, which can allow remote attackers to execute script and steal cookies from subframes that are in other domains.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDE Konqueror子框架脚本执行漏洞
Vulnerability Description
KDE 2.2.2版本以及3.0版本到3.0.3版本中Konqueror的跨站脚本保护不能正确初始化子框架和子内嵌框架的域,远程攻击者可以执行脚本以及窃取来自其他域的子框架的cookie。
CVSS Information
N/A
Vulnerability Type
N/A