CVE-2007-3820

high

Description

konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.

References

https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00085.html

https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00022.html

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10345

https://exchange.xforce.ibmcloud.com/vulnerabilities/35430

https://euvd.enisa.europa.eu/vulnerability/EUVD-2007-3804

http://www.vupen.com/english/advisories/2007/2538

http://www.ubuntu.com/usn/usn-502-1

http://www.securitytracker.com/id?1018396

http://www.securityfocus.com/bid/24918

http://www.securityfocus.com/bid/24912

http://www.securityfocus.com/archive/1/473712/100/0/threaded

http://www.securityfocus.com/archive/1/473703/100/0/threaded

http://www.redhat.com/support/errata/RHSA-2007-0909.html

http://www.redhat.com/support/errata/RHSA-2007-0905.html

http://www.mandriva.com/security/advisories?name=MDKSA-2007:176

http://www.kde.org/info/security/advisory-20070816-1.txt

http://securityreason.com/securityalert/2905

http://secunia.com/advisories/27108

http://secunia.com/advisories/27106

http://secunia.com/advisories/27096

http://secunia.com/advisories/27090

http://secunia.com/advisories/27089

http://secunia.com/advisories/26720

http://secunia.com/advisories/26612

http://secunia.com/advisories/26091

http://osvdb.org/37242

http://alt.swiecki.net/oper1.html

Details

Source: Mitre, NVD

Published: 2007-07-17

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 2.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:P/A:N

Severity: Low

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Severity: High

EPSS

EPSS: 0.02562