Vulnerabilities > CVE-2008-4293 - Unspecified vulnerability in Opera
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN opera
nessus
Summary
Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors in which Opera is launched by other applications.
Vulnerable Configurations
Nessus
NASL family | Windows |
NASL id | OPERA_952.NASL |
description | The version of Opera installed on the remote host is earlier than 9.52 and thus reportedly affected by several issues : - Specially crafted URLs could start Opera in a way that would allow execution of arbitrary code. - Invalid checking of what frames a site can change, allowing a website to open pages from other sites. - An unspecified cross-site scripting issue. - Custom shortcuts and menu commands may pass parameters created from uninitialized memory. - Secure sites loading insecure content in a frame will cause Opera to incorrectly display the padlock icon. - Feed sources can link to a user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 33949 |
published | 2008-08-20 |
reporter | This script is Copyright (C) 2008-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/33949 |
title | Opera < 9.52 Multiple Vulnerabilities |
code |
|
References
- http://secunia.com/advisories/31549
- http://secunia.com/advisories/31549
- http://www.opera.com/docs/changelogs/windows/952/
- http://www.opera.com/docs/changelogs/windows/952/
- http://www.opera.com/support/search/view/892/
- http://www.opera.com/support/search/view/892/
- http://www.securityfocus.com/bid/30768
- http://www.securityfocus.com/bid/30768
- http://www.vupen.com/english/advisories/2008/2416
- http://www.vupen.com/english/advisories/2008/2416
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44547
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44547