Vulnerabilities > Opera > Opera Browser > 7.22

DATE CVE VULNERABILITY TITLE RISK
2011-07-01 CVE-2011-2611 Unspecified vulnerability in Opera Browser
Unspecified vulnerability in the printing functionality in Opera before 11.50 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted web page.
network
opera
4.3
2011-07-01 CVE-2011-2610 Security vulnerability in Opera Web Browser
Unspecified vulnerability in Opera before 11.50 has unknown impact and attack vectors, related to a "moderately severe issue."
network
low complexity
opera
critical
10.0
2011-07-01 CVE-2011-2609 Cross-Site Scripting vulnerability in Opera Browser
Opera before 11.50 does not properly restrict data: URIs, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site.
network
opera CWE-79
4.3
2011-07-01 CVE-2011-1337 Resource Management Errors vulnerability in Opera Browser
Opera before 11.50 allows remote attackers to cause a denial of service (disk consumption) via invalid URLs that trigger creation of error pages.
network
opera CWE-399
4.3
2011-05-10 CVE-2011-1824 Improper Input Validation vulnerability in Opera Browser
The VEGAOpBitmap::AddLine function in Opera before 10.61 does not properly initialize memory during processing of the SIZE attribute of a SELECT element, which allows remote attackers to trigger an invalid memory write operation, and consequently cause a denial of service (application crash) or possibly execute arbitrary code, via a large integer attribute value.
network
opera CWE-20
4.3
2011-01-31 CVE-2011-0687 Improper Input Validation vulnerability in Opera Browser
Opera before 11.01 does not properly implement Wireless Application Protocol (WAP) dropdown lists, which allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted WAP document.
network
opera CWE-20
4.3
2011-01-31 CVE-2011-0686 Multiple Security vulnerability in Opera Web Browser
Unspecified vulnerability in Opera before 11.01 allows remote attackers to cause a denial of service (application crash) via unknown content on a web page, as demonstrated by vkontakte.ru.
network
low complexity
opera
5.0
2011-01-31 CVE-2011-0685 Improper Input Validation vulnerability in Opera Browser
The Delete Private Data feature in Opera before 11.01 does not properly implement the "Clear all email account passwords" option, which might allow physically proximate attackers to access an e-mail account via an unattended workstation.
local
low complexity
opera CWE-20
2.1
2011-01-31 CVE-2011-0684 Improper Input Validation vulnerability in Opera Browser
Opera before 11.01 does not properly handle redirections and unspecified other HTTP responses, which allows remote web servers to obtain sufficient access to local files to use these files as page resources, and consequently obtain potentially sensitive information from the contents of the files, via an unknown response manipulation.
network
low complexity
opera CWE-20
5.0
2011-01-31 CVE-2011-0683 Permissions, Privileges, and Access Controls vulnerability in Opera Browser
Opera before 11.01 does not properly restrict the use of opera: URLs, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.
network
opera CWE-264
4.3