Vulnerability Details CVE-2009-4071
Opera before 10.10, when exception stacktraces are enabled, places scripting error messages from a web site into variables that can be read by a different web site, which allows remote attackers to obtain sensitive information or conduct cross-site scripting (XSS) attacks via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.0%
CVSS Severity
CVSS v2 Score 5.8
Products affected by CVE-2009-4071
-
cpe:2.3:a:opera:opera_browser:*
-
cpe:2.3:a:opera:opera_browser:10
-
cpe:2.3:a:opera:opera_browser:10.00
-
cpe:2.3:a:opera:opera_browser:10.01
-
cpe:2.3:a:opera:opera_browser:7.0
-
cpe:2.3:a:opera:opera_browser:7.23
-
cpe:2.3:a:opera:opera_browser:7.53
-
cpe:2.3:a:opera:opera_browser:7.54
-
cpe:2.3:a:opera:opera_browser:7.60
-
cpe:2.3:a:opera:opera_browser:8.0
-
cpe:2.3:a:opera:opera_browser:8.01
-
cpe:2.3:a:opera:opera_browser:8.02
-
cpe:2.3:a:opera:opera_browser:8.50
-
cpe:2.3:a:opera:opera_browser:8.51
-
cpe:2.3:a:opera:opera_browser:8.52
-
cpe:2.3:a:opera:opera_browser:8.53
-
cpe:2.3:a:opera:opera_browser:8.54
-
cpe:2.3:a:opera:opera_browser:9.0
-
cpe:2.3:a:opera:opera_browser:9.01
-
cpe:2.3:a:opera:opera_browser:9.02
-
cpe:2.3:a:opera:opera_browser:9.10
-
cpe:2.3:a:opera:opera_browser:9.12
-
cpe:2.3:a:opera:opera_browser:9.20
-
cpe:2.3:a:opera:opera_browser:9.21
-
cpe:2.3:a:opera:opera_browser:9.22
-
cpe:2.3:a:opera:opera_browser:9.51
-
cpe:2.3:a:opera:opera_browser:9.52
-
cpe:2.3:a:opera:opera_browser:9.64