Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar by calling setInterval with a small interval and changing the window.location property.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDE Konqueror setinterval函数地址栏URI欺骗漏洞
Vulnerability Description
Konqueror是K桌面环境的文件管理器,也可用于浏览WEB。 Konqueror的setinterval函数实现上存在漏洞,远程攻击者可能利用此漏洞执行浏览器地址栏欺骗。 如果用很小的时间间隔值(如0)使用setinterval()调用的话,就可以更改window.location属性。当浏览器仍保持在攻击者网站时地址栏中可能显示其他页面的URI,这就给用户造成了错误的安全意识,有利于攻击者执行网络钓鱼攻击。
CVSS Information
N/A
Vulnerability Type
N/A