Konqueror
Kde · 33 CVEs
kdelibs: Heap-based buffer overflow when parsing location of a font face source
Feb 8, 2020
Konqueror: DoS via large length property of a Select object
Jul 20, 2009
The HTML parser in KDE Konqueror 3.5.9 allows remote attackers to cause a denial of service (application crash) via (1)…
Dec 24, 2008
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service…
Dec 22, 2008
Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that cal…
Oct 2, 2008
konqueror: Certificate accepted for alt names, when only common name is shown
Dec 28, 2007
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie para…
Nov 15, 2007
Konqueror in KDE 3.0.3 allows remote attackers to cause a denial of service (core dump) via a web page that begins with…
Oct 24, 2007
Unspecified vulnerability in KDE Konqueror 3.5.7 and earlier allows remote attackers to cause a denial of service (fail…
Aug 8, 2007
Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http…
Aug 8, 2007
URL spoof in address bar
Aug 8, 2007
Spoofing of URI possible in Konqueror's address bar
Jul 17, 2007
konqueror visual hostname truncation in HTTP authentication dialog
Jun 11, 2007
Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScri…
Apr 22, 2007
Konqueror 3.5.5 allows remote attackers to cause a denial of service (crash) by using JavaScript to read a child iframe…
Mar 21, 2007
FTP protocol PASV design flaw affects konqueror
Mar 21, 2007
kdelibs KDE JavaScript denial of service (crash)
Mar 7, 2007
konqueror XSS
Jan 29, 2007
KDE Konqueror 3.5.1 and earlier allows remote attackers to cause a denial of service (application crash) by calling the…
Jul 18, 2006
Konqueror can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its search list,…
Feb 1, 2006
KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure…
Feb 13, 2005
Internet Explorer 6.0 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk,…
Feb 13, 2005
security flaw
Feb 7, 2005
security flaw
Dec 10, 2004
security flaw
Dec 10, 2004
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2012-4512 | kdelibs: Heap-based buffer overflow when parsing location of a font face source | HIGH | 11.66% | Feb 8, 2020 |
| CVE-2009-2537 | Konqueror: DoS via large length property of a Select object | MEDIUM | 3.19% | Jul 20, 2009 |
| CVE-2008-5712 | The HTML parser in KDE Konqueror 3.5.9 allows remote attackers to cause a denial of service (application crash) via (1) a long COLOR attribute in an HR element… | MEDIUM | 3.80% | Dec 24, 2008 |
| CVE-2008-5698 | HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid docum… | MEDIUM | 3.49% | Dec 22, 2008 |
| CVE-2008-4382 | Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded… | MEDIUM | 1.10% | Oct 2, 2008 |
| CVE-2007-6591 | konqueror: Certificate accepted for alt names, when only common name is shown | MEDIUM | 0.82% | Dec 28, 2007 |
| CVE-2007-6000 | KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters. | MEDIUM | 3.34% | Nov 15, 2007 |
| CVE-2003-1478 | Konqueror in KDE 3.0.3 allows remote attackers to cause a denial of service (core dump) via a web page that begins with a "xFFxFE" byte sequence and a large nu… | MEDIUM | 4.21% | Oct 24, 2007 |
| CVE-2007-4229 | Unspecified vulnerability in KDE Konqueror 3.5.7 and earlier allows remote attackers to cause a denial of service (failed assertion and application crash) via… | MEDIUM | 2.18% | Aug 8, 2007 |
| CVE-2007-4225 | Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http URI with a large amount of whitespace i… | MEDIUM | 1.96% | Aug 8, 2007 |
| CVE-2007-4224 | URL spoof in address bar | MEDIUM | 1.83% | Aug 8, 2007 |
| CVE-2007-3820 | Spoofing of URI possible in Konqueror's address bar | LOW | 2.56% | Jul 17, 2007 |
| CVE-2007-3143 | konqueror visual hostname truncation in HTTP authentication dialog | MEDIUM | 1.99% | Jun 11, 2007 |
| CVE-2007-2164 | Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScript that matches a regular expression aga… | MEDIUM | 1.42% | Apr 22, 2007 |
| CVE-2007-1565 | Konqueror 3.5.5 allows remote attackers to cause a denial of service (crash) by using JavaScript to read a child iframe having an ftp:// URI. | HIGH | 1.26% | Mar 21, 2007 |
| CVE-2007-1564 | FTP protocol PASV design flaw affects konqueror | MEDIUM | 3.78% | Mar 21, 2007 |
| CVE-2007-1308 | kdelibs KDE JavaScript denial of service (crash) | MEDIUM | 8.44% | Mar 7, 2007 |
| CVE-2007-0537 | konqueror XSS | LOW | 1.85% | Jan 29, 2007 |
| CVE-2006-3672 | KDE Konqueror 3.5.1 and earlier allows remote attackers to cause a denial of service (application crash) by calling the replaceChild method on a DOM object, wh… | LOW | 6.87% | Jul 18, 2006 |
| CVE-2005-4684 | Konqueror can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its search list, which allows remote attackers to trick a… | MEDIUM | 1.41% | Feb 1, 2006 |
| CVE-2004-0870 | KDE Konqueror does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain,… | MEDIUM | 1.46% | Feb 13, 2005 |
| CVE-2004-0866 | Internet Explorer 6.0 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote a… | HIGH | 10.08% | Feb 13, 2005 |
| CVE-2005-0237 | security flaw | MEDIUM | 1.63% | Feb 7, 2005 |
| CVE-2004-1165 | security flaw | HIGH | 4.44% | Dec 10, 2004 |
| CVE-2004-1158 | security flaw | HIGH | 2.72% | Dec 10, 2004 |
Showing 1 to 25 of 33 CVEs