Back

MEDIUM

FTP protocol PASV design flaw affects konqueror

Published Mar 21, 2007

Description

The FTP protocol implementation in Konqueror 3.5.5 allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response.

Affected products

Remediation

Red Hat statement

The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Metrics

References (17)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 21, 2007
Updated Aug 7, 2024
Reserved Mar 21, 2007
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Mar 22, 2007