Описание
Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own user interface, which allows remote attackers to spoof the address field via a crafted web site.
Ссылки
- Broken Link
- Broken LinkVendor Advisory
- Broken LinkVendor Advisory
- Broken Link
- Broken LinkPatchThird Party AdvisoryVDB Entry
- Broken LinkPatchVendor Advisory
- Third Party AdvisoryVDB Entry
- Tool Signature
- Broken Link
- Broken LinkVendor Advisory
- Broken LinkVendor Advisory
- Broken Link
- Broken LinkPatchThird Party AdvisoryVDB Entry
- Broken LinkPatchVendor Advisory
- Third Party AdvisoryVDB Entry
- Tool Signature
Уязвимые конфигурации
Конфигурация 1Версия до 10.01 (исключая)
Одновременно
cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01217
Низкий
5.8 Medium
CVSS2
Дефекты
CWE-601
Связанные уязвимости
github
почти 4 года назад
Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own user interface, which allows remote attackers to spoof the address field via a crafted web site.
EPSS
Процентиль: 79%
0.01217
Низкий
5.8 Medium
CVSS2
Дефекты
CWE-601