Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDE Konqueror漏洞
Vulnerability Description
KDE Konqueror没有阻止在相同领域发送安全通道(HTTPS/SSL)时也发送不安全通道(HTTP)的cookies。远程攻击者窃取cookies和执行非法的活动,也称为“跨安全边界Cookie注入”。
CVSS Information
N/A
Vulnerability Type
N/A