Vulnerabilities
Vulnerable Software
Opera:  >> Opera Browser  >> 10.53  Security Vulnerabilities
Opera before 12.00 Beta allows remote attackers to cause a denial of service (memory consumption or application hang) via an IFRAME element that uses the src="#" syntax to embed a parent document.
CVSS Score
5.0
EPSS Score
0.005
Published
2012-06-14
Opera before 11.65 does not ensure that keyboard sequences are associated with a visible window, which makes it easier for user-assisted remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary code via a crafted web site, related to a "hidden keyboard navigation" issue.
CVSS Score
7.6
EPSS Score
0.056
Published
2012-06-14
Opera before 11.65 does not properly restrict the opening of a pop-up window in response to the first click of a double-click action, which makes it easier for user-assisted remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary code via a crafted web site.
CVSS Score
9.3
EPSS Score
0.029
Published
2012-06-14
Opera before 11.62 allows user-assisted remote attackers to trick users into downloading and executing arbitrary files via a small window for the download dialog.
CVSS Score
6.8
EPSS Score
0.012
Published
2012-03-28
Opera before 11.62 does not ensure that a dialog window is placed on top of content windows, which makes it easier for user-assisted remote attackers to trick users into downloading and executing arbitrary files via a download dialog located under other windows.
CVSS Score
6.8
EPSS Score
0.016
Published
2012-03-28
Opera before 11.62 allows remote attackers to bypass the Same Origin Policy via the (1) history.pushState and (2) history.replaceState functions in conjunction with cross-domain frames, leading to unintended read access to history.state information.
CVSS Score
5.0
EPSS Score
0.006
Published
2012-03-28
Opera before 11.62 allows remote attackers to spoof the address field by triggering the launch of a dialog window associated with a different domain.
CVSS Score
6.4
EPSS Score
0.017
Published
2012-03-28
Opera before 11.62 allows remote attackers to spoof the address field by triggering a page reload followed by a redirect to a different domain.
CVSS Score
6.4
EPSS Score
0.017
Published
2012-03-28
Opera before 11.62 on Mac OS X allows remote attackers to spoof the address field and security dialogs via crafted styling that causes page content to be displayed outside of the intended content area.
CVSS Score
6.4
EPSS Score
0.01
Published
2012-03-28
Opera before 11.62 on UNIX uses world-readable permissions for temporary files during printing, which allows local users to obtain sensitive information by reading these files.
CVSS Score
4.6
EPSS Score
0.0
Published
2012-03-28


Contact Us

Shodan ® - All rights reserved