Show filters
559 Total Results
Displaying 481-490 of 559
Sort by:
Attacker Value
Unknown
CVE-2007-0127
Disclosure Date: January 09, 2007 (last updated October 04, 2023)
The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remote attackers to execute arbitrary code via JavaScript code that uses an invalid object in this request that causes a controlled pointer to be referenced during the virtual function call.
0
Attacker Value
Unknown
CVE-2006-4819
Disclosure Date: October 17, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in Opera 9.0 and 9.01 allows remote attackers to execute arbitrary code via a long URL in a tag (long link address).
0
Attacker Value
Unknown
CVE-2006-4092
Disclosure Date: August 11, 2006 (last updated October 04, 2023)
Simpliciti Locked Browser does not properly limit a user's actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.
0
Attacker Value
Unknown
CVE-2006-3945
Disclosure Date: July 31, 2006 (last updated October 04, 2023)
The CSS functionality in Opera 9 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by setting the background property of a DHTML element to a long http or https URL, which triggers memory corruption.
0
Attacker Value
Unknown
CVE-2006-3353
Disclosure Date: July 06, 2006 (last updated October 04, 2023)
Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to an iframe and JavaScript that accesses certain style sheets properties.
0
Attacker Value
Unknown
CVE-2006-3331
Disclosure Date: June 30, 2006 (last updated October 04, 2023)
Opera before 9.0 does not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to spoof a trusted SSL certificate from an untrusted website and facilitates phishing attacks.
0
Attacker Value
Unknown
CVE-2006-3198
Disclosure Date: June 23, 2006 (last updated October 04, 2023)
Integer overflow in Opera 8.54 and earlier allows remote attackers to execute arbitrary code via a JPEG image with large height and width values, which causes less memory to be allocated than intended.
0
Attacker Value
Unknown
CVE-2006-3199
Disclosure Date: June 23, 2006 (last updated October 04, 2023)
Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attribute with a URL containing a long hostname, which triggers an out-of-bounds operation.
0
Attacker Value
Unknown
CVE-2006-2058
Disclosure Date: April 26, 2006 (last updated February 14, 2024)
Argument injection vulnerability in Avant Browser 10.1 Build 17 allows user-assisted remote attackers to modify command line arguments to an invoked mail client via " (double quote) characters in a mailto: scheme handler, as demonstrated by launching Microsoft Outlook with an arbitrary filename as an attachment. NOTE: it is not clear whether this issue is implementation-specific or a problem in the Microsoft API.
0
Attacker Value
Unknown
CVE-2006-1834
Disclosure Date: April 19, 2006 (last updated October 04, 2023)
Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass a length check. NOTE: a sign extension problem makes the attack easier with shorter strings.
0