Vulnerability Details CVE-2008-3172
Opera allows web sites to set cookies for country-specific top-level domains that have DNS A records, such as co.tv, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka "Cross-Site Cooking."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.9%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2008-3172
-
-
cpe:2.3:a:opera:opera:52.1.2517.139570
-
cpe:2.3:a:opera:opera:54.0.2669.49432
-
cpe:2.3:a:opera:opera:61.0.3076.56532