Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5hgg-xq5w-5m82

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Opera offers an Open button to verify that a user wishes to execute a downloaded file, which allows user-assisted remote attackers to construct a race condition that tricks a user into clicking Open via a request for a different mouse or keyboard action very shortly before the Open dialog appears. NOTE: this is a different issue than CVE-2005-2407.

Opera offers an Open button to verify that a user wishes to execute a downloaded file, which allows user-assisted remote attackers to construct a race condition that tricks a user into clicking Open via a request for a different mouse or keyboard action very shortly before the Open dialog appears. NOTE: this is a different issue than CVE-2005-2407.

EPSS

Процентиль: 54%
0.00308
Низкий

Дефекты

CWE-362

Связанные уязвимости

nvd
около 21 года назад

Opera offers an Open button to verify that a user wishes to execute a downloaded file, which allows user-assisted remote attackers to construct a race condition that tricks a user into clicking Open via a request for a different mouse or keyboard action very shortly before the Open dialog appears. NOTE: this is a different issue than CVE-2005-2407.

EPSS

Процентиль: 54%
0.00308
Низкий

Дефекты

CWE-362