CVE Vulnerabilities

CVE-2002-1152

Published: Oct 11, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Konqueror in KDE 3.0 through 3.0.2 does not properly detect the secure flag in an HTTP cookie, which could cause Konqueror to send the cookie across an unencrypted channel, which could allow remote attackers to steal the cookie via sniffing.

Affected Software

Name Vendor Start Version End Version
Kde Kde 3.0 (including) 3.0 (including)
Kde Kde 3.0.1 (including) 3.0.1 (including)
Kde Kde 3.0.2 (including) 3.0.2 (including)

References