Show filters
169 Total Results
Displaying 161-169 of 169
Sort by:
Attacker Value
Unknown
CVE-2007-2022
Disclosure Date: April 13, 2007 (last updated October 04, 2023)
Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive information (browser keystrokes), which are leaked to the Flash Player applet.
0
Attacker Value
Unknown
CVE-2006-6955
Disclosure Date: January 29, 2007 (last updated October 04, 2023)
Opera allows remote attackers to cause a denial of service (application crash) via a web page that contains a large number of nested marquee tags, a related issue to CVE-2006-2723.
0
Attacker Value
Unknown
CVE-2007-0127
Disclosure Date: January 09, 2007 (last updated October 04, 2023)
The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remote attackers to execute arbitrary code via JavaScript code that uses an invalid object in this request that causes a controlled pointer to be referenced during the virtual function call.
0
Attacker Value
Unknown
CVE-2006-1834
Disclosure Date: April 19, 2006 (last updated October 04, 2023)
Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass a length check. NOTE: a sign extension problem makes the attack easier with shorter strings.
0
Attacker Value
Unknown
CVE-2005-3006
Disclosure Date: September 21, 2005 (last updated February 22, 2025)
The mail client in Opera before 8.50 opens attached files from the user's cache directory without warning the user, which might allow remote attackers to inject arbitrary web script and spoof attachment filenames.
0
Attacker Value
Unknown
CVE-2004-1491
Disclosure Date: December 31, 2004 (last updated October 04, 2023)
Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry.
0
Attacker Value
Unknown
CVE-2003-0593
Disclosure Date: April 15, 2004 (last updated February 22, 2025)
Opera allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Opera to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.
0
Attacker Value
Unknown
CVE-2002-2311
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Microsoft Internet Explorer 6.0 and possibly others allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webpage. NOTE: it was reported that the vendor has disputed the severity of this issue.
0
Attacker Value
Unknown
CVE-2001-1245
Disclosure Date: July 09, 2001 (last updated February 22, 2025)
Opera 5.0 for Linux does not properly handle malformed HTTP headers, which allows remote attackers to cause a denial of service, possibly with a header whose value is the same as a MIME header name.
0