Vulnerability Details CVE-2020-6157
Opera Touch for iOS before version 2.4.5 is vulnerable to an address bar spoofing attack. The vulnerability allows a malicious page to trick the browser into showing an address of a different page. This may allow the malicious page to impersonate another page and trick a user into providing sensitive data.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.8%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.3
Products affected by CVE-2020-6157
-
cpe:2.3:a:opera:opera_touch:1.10.0
-
cpe:2.3:a:opera:opera_touch:1.10.1
-
cpe:2.3:a:opera:opera_touch:1.11.0
-
cpe:2.3:a:opera:opera_touch:1.11.1
-
cpe:2.3:a:opera:opera_touch:1.9.0
-
cpe:2.3:a:opera:opera_touch:2.0.0
-
cpe:2.3:a:opera:opera_touch:2.0.1
-
cpe:2.3:a:opera:opera_touch:2.0.2
-
cpe:2.3:a:opera:opera_touch:2.0.3
-
cpe:2.3:a:opera:opera_touch:2.0.4
-
cpe:2.3:a:opera:opera_touch:2.0.5
-
cpe:2.3:a:opera:opera_touch:2.1.0
-
cpe:2.3:a:opera:opera_touch:2.2.0
-
cpe:2.3:a:opera:opera_touch:2.2.1
-
cpe:2.3:a:opera:opera_touch:2.3.0
-
cpe:2.3:a:opera:opera_touch:2.3.1
-
cpe:2.3:a:opera:opera_touch:2.3.2
-
cpe:2.3:a:opera:opera_touch:2.4.0
-
cpe:2.3:a:opera:opera_touch:2.4.1
-
cpe:2.3:a:opera:opera_touch:2.4.3
-
cpe:2.3:a:opera:opera_touch:2.4.4