Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.802646
Category:General
Title:Opera Multiple Vulnerabilities - June12 (Windows)
Summary:The host is installed with Opera and is prone to multiple; vulnerabilities.
Description:Summary:
The host is installed with Opera and is prone to multiple
vulnerabilities.

Vulnerability Insight:
- An error when displaying preferences within a small window can be exploited
to execute arbitrary code by tricking a user into entering a specific
keyboard sequence.

- An error when displaying pop-up windows can be exploited to execute script
code by tricking a user into following a specific sequence of events.

- An error when handling JSON resources can be exploited to bypass the cross
domain policy restriction and disclose certain information to other sites.

- An unspecified error can be exploited to display arbitrary content while
showing the URL of a trusted web site in the address bar.

- An error when handling page loads can be exploited to display arbitrary
content while showing the URL of a trusted web site in the address.

Vulnerability Impact:
Successful exploitation will allow remote attackers to execute arbitrary
script code, disclose sensitive information or spoof the originating URL
of a trusted web site and carry out phishing-style attacks.

Affected Software/OS:
Opera version prior to 11.65 on Windows

Solution:
Upgrade to Opera version 11.65 or 12 or later.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: BugTraq ID: 54011
Common Vulnerability Exposure (CVE) ID: CVE-2012-3555
Common Vulnerability Exposure (CVE) ID: CVE-2012-3556
Common Vulnerability Exposure (CVE) ID: CVE-2012-3557
Common Vulnerability Exposure (CVE) ID: CVE-2012-3558
Common Vulnerability Exposure (CVE) ID: CVE-2012-3560
http://blog.vulnhunt.com/index.php/2012/06/14/cal-2012-0015-opera-website-spoof/
CopyrightCopyright (C) 2012 Greenbone Networks GmbH

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.