Описание
Opera 7.54 and earlier does not properly limit an applet's access to internal Java packages from Sun, which allows remote attackers to gain sensitive information, such as user names and the installation directory.
Ссылки
- Exploit
- PatchThird Party Advisory
- Broken Link
- Exploit
- PatchThird Party Advisory
- Broken Link
Уязвимые конфигурации
Конфигурация 1Версия до 7.54 (включая)
cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.02014
Низкий
2.6 Low
CVSS2
Дефекты
CWE-668
Связанные уязвимости
github
больше 4 лет назад
Opera 7.54 and earlier does not properly limit an applet's access to internal Java packages from Sun, which allows remote attackers to gain sensitive information, such as user names and the installation directory.
EPSS
Процентиль: 79%
0.02014
Низкий
2.6 Low
CVSS2
Дефекты
CWE-668