Vulnerabilities > Opera > Opera Browser > 6.10

DATE CVE VULNERABILITY TITLE RISK
2009-10-30 CVE-2009-3832 Open Redirect vulnerability in Opera Browser
Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own user interface, which allows remote attackers to spoof the address field via a crafted web site.
network
opera CWE-601
5.8
2009-10-30 CVE-2009-3831 Out-of-bounds Write vulnerability in Opera Browser
Opera before 10.01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted domain name.
network
opera CWE-787
critical
9.3
2009-09-02 CVE-2009-3046 Improper Certificate Validation vulnerability in Opera Browser
Opera before 10.00 does not check all intermediate X.509 certificates for revocation, which makes it easier for remote SSL servers to bypass validation of the certificate chain via a revoked certificate.
network
low complexity
opera CWE-295
7.5
2009-03-16 CVE-2009-0915 Cross-site Scripting vulnerability in Opera Browser
Opera before 9.64 allows remote attackers to conduct cross-domain scripting attacks via unspecified vectors related to plug-ins.
network
opera CWE-79
6.8
2008-09-27 CVE-2008-4197 Use of Uninitialized Resource vulnerability in Opera Browser
Opera before 9.52 on Windows, Linux, FreeBSD, and Solaris, when processing custom shortcut and menu commands, can produce argument strings that contain uninitialized memory, which might allow user-assisted remote attackers to execute arbitrary code or conduct other attacks via vectors related to activation of a shortcut.
network
low complexity
opera CWE-908
8.8
2008-06-16 CVE-2008-2716 Improper Restriction of Rendered UI Layers or Frames vulnerability in Opera Browser
Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of trusted frames on the same parent page by modifying the location, which can facilitate phishing attacks.
network
low complexity
opera CWE-1021
5.0
2007-08-15 CVE-2007-4367 Release of Invalid Pointer or Reference vulnerability in Opera Browser
Opera before 9.23 allows remote attackers to execute arbitrary code via crafted Javascript that triggers a "virtual function call on an invalid pointer."
network
opera CWE-763
critical
9.3
2007-07-21 CVE-2007-3929 Use After Free vulnerability in Opera Browser
Use-after-free vulnerability in the BitTorrent support in Opera before 9.22 allows user-assisted remote attackers to execute arbitrary code via a crafted header in a torrent file, which leaves a dangling pointer to an invalid object.
network
opera CWE-416
critical
9.3
2007-05-22 CVE-2007-2809 Classic Buffer Overflow vulnerability in Opera Browser
Buffer overflow in the transfer manager in Opera before 9.21 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafted torrent file.
network
opera CWE-120
critical
9.3
2006-07-06 CVE-2006-3353 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Opera Browser
Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to an iframe and JavaScript that accesses certain style sheets properties.
network
low complexity
opera CWE-119
5.0