4.3
CVSSv2

CVE-2010-2536

Published: 02/08/2010 Updated: 03/11/2010
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in rekonq 0.5 and previous versions allow remote malicious users to inject arbitrary web script or HTML via (1) a URL associated with a nonexistent domain name, related to webpage.cpp, aka a "universal XSS" issue; (2) unspecified vectors related to webview.cpp; and the about: views for (3) favorites, (4) bookmarks, (5) closed tabs, and (6) history.

Vulnerable Product Search on Vulmon Subscribe to Product

adjam rekonq 0.4.90

adjam rekonq 0.4.0

adjam rekonq 0.1

adjam rekonq 0.0.4

adjam rekonq 0.2.0

adjam rekonq 0.1.98

adjam rekonq 0.0.1

adjam rekonq

adjam rekonq 0.3.90

adjam rekonq 0.3.0

adjam rekonq 0.2.90

adjam rekonq 0.0.3

adjam rekonq 0.0.2

adjam rekonq 0.4.95

adjam rekonq 0.1.95

adjam rekonq 0.1.0

Exploits

The Rekonq web browser is vulnerable to Javascript injection in a number of components of the user interface Depending on the exact component affected this can lead to Javascript being executed in a number of contexts which in the worst case could allow an arbitrary web site to be spoofed or even for the Javascript to be executed in the context of ...