Описание
Opera 7.x up to 7.54, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.
Ссылки
- Broken LinkVendor Advisory
- Broken Link
- Broken Link
- Third Party Advisory
- Broken LinkVendor Advisory
- Broken Link
- Broken Link
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 7.0 (включая) до 7.54 (включая)
cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.00673
Низкий
7.5 High
CVSS2
Дефекты
CWE-74
Связанные уязвимости
github
больше 3 лет назад
Opera 7.x up to 7.54, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.
EPSS
Процентиль: 70%
0.00673
Низкий
7.5 High
CVSS2
Дефекты
CWE-74