Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
kioslave/http/http.cpp in KIO in kdelibs 4.10.3 and earlier allows attackers to discover credentials via a crafted request that triggers an "internal server error," which includes the username and password in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDELibs 本地密码泄露漏洞
Vulnerability Description
KDELibs是KDE社区的一个创建在Qt框架之上的KDE API参考库,它提供框架和众多功能来开发KDE软件,使应用程序更容易编写,并提供KDE桌面环境的一致性。 KDELibs 4.10.3及之前的版本中的kioslave/http/http.cpp文件中的‘m_request.url.url()’函数存在安全漏洞,该漏洞源于程序以明文方式发送认证信息。远程攻击者可利用该漏洞发现凭证。
CVSS Information
N/A
Vulnerability Type
N/A