Show filters
294 Total Results
Displaying 181-190 of 294
Sort by:
Attacker Value
Unknown
CVE-2009-0915
Disclosure Date: March 16, 2009 (last updated October 04, 2023)
Opera before 9.64 allows remote attackers to conduct cross-domain scripting attacks via unspecified vectors related to plug-ins.
0
Attacker Value
Unknown
CVE-2008-5683
Disclosure Date: December 19, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Opera before 9.63 allows remote attackers to "reveal random data" via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-5680
Disclosure Date: December 19, 2008 (last updated October 04, 2023)
Multiple buffer overflows in Opera before 9.63 might allow (1) remote attackers to execute arbitrary code via a crafted text area, or allow (2) user-assisted remote attackers to execute arbitrary code via a long host name in a file: URL. NOTE: this might overlap CVE-2008-5178.
0
Attacker Value
Unknown
CVE-2008-5682
Disclosure Date: December 19, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Opera before 9.63 allows remote attackers to inject arbitrary web script or HTML via built-in XSLT templates.
0
Attacker Value
Unknown
CVE-2008-5681
Disclosure Date: December 19, 2008 (last updated October 04, 2023)
Opera before 9.63 does not block unspecified "scripted URLs" during the feed preview, which allows remote attackers to read existing subscriptions and force subscriptions to arbitrary feed URLs.
0
Attacker Value
Unknown
CVE-2008-4697
Disclosure Date: October 23, 2008 (last updated October 04, 2023)
The Fast Forward feature in Opera before 9.61, when a page is located in a frame, executes a javascript: URL in the context of the outermost page instead of the page that contains this URL, which allows remote attackers to conduct cross-site scripting (XSS) attacks.
0
Attacker Value
Unknown
CVE-2008-4725
Disclosure Date: October 23, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Opera.dll in Opera 9.52 allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly escaped before storage in the History Search database (aka md.dat), a different vector than CVE-2008-4696. NOTE: some of these issues were addressed before 9.60.
0
Attacker Value
Unknown
CVE-2008-4694
Disclosure Date: October 23, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Opera before 9.60 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a redirect that specifies a crafted URL.
0
Attacker Value
Unknown
CVE-2008-4698
Disclosure Date: October 23, 2008 (last updated October 04, 2023)
Opera before 9.61 does not properly block scripts during preview of a news feed, which allows remote attackers to create arbitrary new feed subscriptions and read the contents of arbitrary feeds.
0
Attacker Value
Unknown
CVE-2008-4292
Disclosure Date: September 27, 2008 (last updated October 04, 2023)
Opera before 9.52 does not check the CRL override upon encountering a certificate that lacks a CRL, which has unknown impact and attack vectors. NOTE: it is not clear whether this is a vulnerability, but the vendor included it in a security section of the advisory.
0