Описание
Opera 8.01 allows remote attackers to conduct cross-site scripting (XSS) attacks or modify which files are uploaded by tricking a user into dragging an image that is a "javascript:" URI.
Ссылки
- Broken LinkPatch
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkPatch
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Broken LinkPatch
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkPatch
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:opera:opera_browser:8.01:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00485
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
почти 4 года назад
Opera 8.01 allows remote attackers to conduct cross-site scripting (XSS) attacks or modify which files are uploaded by tricking a user into dragging an image that is a "javascript:" URI.
EPSS
Процентиль: 65%
0.00485
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79