Show filters
294 Total Results
Displaying 111-120 of 294
Sort by:
Attacker Value
Unknown
CVE-2011-0681
Disclosure Date: January 31, 2011 (last updated October 04, 2023)
The Cascading Style Sheets (CSS) Extensions for XML implementation in Opera before 11.01 recognizes links to javascript: URLs in the -o-link property, which makes it easier for remote attackers to bypass CSS filtering via a crafted URL.
0
Attacker Value
Unknown
CVE-2011-0683
Disclosure Date: January 31, 2011 (last updated October 04, 2023)
Opera before 11.01 does not properly restrict the use of opera: URLs, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.
0
Attacker Value
Unknown
CVE-2011-0685
Disclosure Date: January 31, 2011 (last updated October 04, 2023)
The Delete Private Data feature in Opera before 11.01 does not properly implement the "Clear all email account passwords" option, which might allow physically proximate attackers to access an e-mail account via an unattended workstation.
0
Attacker Value
Unknown
CVE-2011-0450
Disclosure Date: January 31, 2011 (last updated October 04, 2023)
The downloads manager in Opera before 11.01 on Windows does not properly determine the pathname of the filesystem-viewing application, which allows user-assisted remote attackers to execute arbitrary code via a crafted web site that hosts an executable file.
0
Attacker Value
Unknown
CVE-2010-4585
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the auto-update functionality in Opera before 11.00 allows remote attackers to cause a denial of service (application crash) by triggering an Opera Unite update.
0
Attacker Value
Unknown
CVE-2010-4583
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Opera before 11.00, when Opera Turbo is enabled, does not display a page's security indication, which makes it easier for remote attackers to spoof trusted content via a crafted web site.
0
Attacker Value
Unknown
CVE-2010-4580
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Opera before 11.00 does not clear WAP WML form fields after manual navigation to a new web site, which allows remote attackers to obtain sensitive information via an input field that has the same name as an input field on a previously visited web site.
0
Attacker Value
Unknown
CVE-2010-4582
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Opera before 11.00 does not properly handle security policies during updates to extensions, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.
0
Attacker Value
Unknown
CVE-2010-4586
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
The default configuration of Opera before 11.00 enables WebSockets functionality, which has unspecified impact and remote attack vectors, possibly a related issue to CVE-2010-4508.
0
Attacker Value
Unknown
CVE-2010-4579
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Opera before 11.00 does not properly constrain dialogs to appear on top of rendered documents, which makes it easier for remote attackers to trick users into interacting with a crafted web site that spoofs the (1) security information dialog or (2) download dialog.
0