Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0746

EPSS 1.49% · P81
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0746

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Konqueror跨域Cookie注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
KDE是一款免费开放源代码X桌面管理程序。 KDE Konqueror浏览器不正确处理COOKIE信息,远程攻击者可以利用这个漏洞注入恶意数据到COOKIE中。 在受影响域下操作的WEB站点可以设置HTTP COOKIE,使Konqueror Web浏览器可以发送COOKIE信息到操作在相同域中其他WEB站点上。恶意WEB站点可以利用这个漏洞进行类似会话定置的攻击( http://www.acros.si/papers/session_fixation.pdf )。 此漏洞影响所有域第二级字符超过2个字符
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0746

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0746

登录查看更多情报信息。

Same Patch Batch · n/a · 2004-09-14 · 14 CVEs total

CVE-2004-0690KDE DCOPServer以不安全方式创建临时文件漏洞
CVE-2004-0699Check Point VPN-1 ASN.1缓冲区溢出漏洞
CVE-2004-0752OpenOffice临时文件泄露漏洞
CVE-2004-0775WIDCOMM蓝牙连接软件缓冲区溢出漏洞
CVE-2004-0781Icecast服务器状态显示跨站脚本漏洞
CVE-2004-0793bsdmainutils任意系统文件查看漏洞
CVE-2004-0797Zlib 处理错误拒绝服务漏洞
CVE-2004-0806CDRTools RSH环境变量权限提升漏洞
CVE-2004-0807Samba多个ASN.1和MailSlot解析模块远程拒绝服务漏洞
CVE-2004-0808Samba多个ASN.1和MailSlot解析模块远程拒绝服务漏洞
CVE-2004-0839Microsoft Windows Internet Explorer拖放处理存在漏洞(MS04-038)
CVE-2004-0841Microsoft Internet Explorer 安全漏洞
CVE-2004-0842Microsoft Internet Explorer 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-0746

No comments yet


Leave a comment