Vulnerability Name:

CVE-2005-4684 (CCN-25291)

Assigned:2005-11-04
Published:2005-11-04
Updated:2017-07-20
Summary:Konqueror can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its search list, which allows remote attackers to trick a user into accepting a cookie for a hostname formed via search-list expansion of the hostname entered by the user, or steal a cookie for an expanded hostname, as demonstrated by an attacker who operates an ap1.com Internet web site to steal cookies associated with an ap1.com.example.com intranet web site.
CVSS v3 Severity:6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
6.4 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-Other
Vulnerability Consequences:Obtain Information
References:Source: CCN
Type: Full-Disclosure Mailing List, Fri Nov 04 2005
Browser cookie handling: possible cross-domain cookie sharing

Source: FULLDISC
Type: UNKNOWN
20051104 Browser cookie handling: possible cross-domain cookie sharing

Source: MITRE
Type: CNA
CVE-2005-4684

Source: MITRE
Type: CNA
CVE-2005-4685

Source: CCN
Type: Konqueror Web site
Konqueror

Source: CCN
Type: OSVDB ID: 20973
Mozilla Firefox Cross-domain Cookie Sharing Weakness

Source: CCN
Type: OSVDB ID: 79175
Netscape Cross-domain Cookie Sharing Weakness

Source: CCN
Type: OSVDB ID: 79176
KDE Konqueror Cross-domain Cookie Sharing Weakness

Source: BID
Type: UNKNOWN
15331

Source: CCN
Type: BID-15331
Multiple Vendor Web Browser Cookie Hostname Handling Weakness

Source: XF
Type: UNKNOWN
konqueror-cookie-information-disclosure(25291)

Source: XF
Type: UNKNOWN
konqueror-cookie-information-disclosure(25291)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:kde:konqueror:0.1:*:embedded:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:2.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:2.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:2.2.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:2.2.2:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0.5:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.0.5b:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1.4:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.1.5:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.2.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.2.2.6:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.2.3:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.3:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.3.1:*:*:*:*:*:*:*
  • OR cpe:/a:kde:konqueror:3.3.2:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:kde:konqueror:*:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:mozilla:*:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    kde konqueror 0.1
    kde konqueror 2.1.1
    kde konqueror 2.1.2
    kde konqueror 2.2.1
    kde konqueror 2.2.2
    kde konqueror 3.0
    kde konqueror 3.0.1
    kde konqueror 3.0.2
    kde konqueror 3.0.3
    kde konqueror 3.0.5
    kde konqueror 3.0.5b
    kde konqueror 3.1
    kde konqueror 3.1.1
    kde konqueror 3.1.2
    kde konqueror 3.1.3
    kde konqueror 3.1.4
    kde konqueror 3.1.5
    kde konqueror 3.2.1
    kde konqueror 3.2.2.6
    kde konqueror 3.2.3
    kde konqueror 3.3
    kde konqueror 3.3.1
    kde konqueror 3.3.2
    kde konqueror *
    mozilla mozilla *
    mozilla firefox *