VYPR
High severity7.5NVD Advisory· Published Nov 29, 2018· Updated Jun 17, 2026

CVE-2018-19120

CVE-2018-19120

Description

The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • KDE/Kde Applicationsinferred3 versions
    <18.12.0+ 2 more
    • (no CPE)range: <18.12.0
    • cpe:2.3:a:kde:kde_applications:*:*:*:*:*:*:*:*range: <18.12.0
    • (no CPE)range: <18.12.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.