Lucene search

K
ubuntucveUbuntu.comUB:CVE-2004-1158
HistoryJan 10, 2005 - 12:00 a.m.

CVE-2004-1158

2005-01-1000:00:00
ubuntu.com
ubuntu.com
19

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.023

Percentile

89.8%

Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote
attackers to spoof arbitrary web sites by injecting content from one window
into a target window or tab whose name is known but resides in a different
domain, as demonstrated using a pop-up window on a trusted web site, aka
the “window injection” vulnerability.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchkdebase< 3.5.2-0ubuntu27.1UNKNOWN
ubuntu6.10noarchkdebase< 3.5.5-0ubuntu3.5UNKNOWN
ubuntu7.04noarchkdebase< 3.5.6-0ubuntu20.2UNKNOWN
ubuntu6.06noarchkdelibs< 3.5.2-0ubuntu18.5UNKNOWN
ubuntu6.10noarchkdelibs< 3.5.5-0ubuntu3.5UNKNOWN
ubuntu7.04noarchkdelibs< 3.5.6-0ubuntu14.1UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.023

Percentile

89.8%