CVE-2007-1308
MEDIUM 4.3EPSS 8.2%
ecma/kjs_html.cpp in KDE JavaScript (KJS), as used in Konqueror in KDE 3.5.5, allows remote attackers to cause a denial of service (crash) by accessing the content of an iframe with an ftp:// URI in the src attribute, probably due to a NULL pointer dereference.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P - EPSS
- 8.19% chance of exploitation in the next 30 days, 94th percentile
- Published
- 2007-03-07
- Updated
- 2024-08-07