Vulnerabilities > CVE-2001-0898 - Unspecified vulnerability in Opera Software Opera web Browser

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
opera-software
exploit available

Summary

Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.

Vulnerable Configurations

Part Description Count
Application
Opera_Software
1

Exploit-Db

descriptionOpera 5.0/5.1 Same Origin Policy Circumvention Vulnerability. CVE-2001-0898. Remote exploit for windows platform
idEDB-ID:21156
last seen2016-02-02
modified2001-11-15
published2001-11-15
reporterGeorgi Guninski
sourcehttps://www.exploit-db.com/download/21156/
titleOpera 5.0/5.1 Same Origin Policy Circumvention Vulnerability