Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Opera Browser Multiple Vulnerabilities july-10 (Win02)

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

9.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

13 years ago

Modified

Modified

5 years ago

Summary

The host is installed with Opera web browser and is prone to multiple vulnerabilities.

Insight

Insight

The multiple flaws are caused due to: - Fails to restrict certain uses of homograph characters in domain names, which makes it easier for remote attackers to spoof IDN domains. - Fails to properly restrict access to the full pathname of a file selected for upload, which allows attackers to obtain potentially sensitive information. - Cross site scripting (XSS) vulnerability when handling a data: URI. - Fails to properly enforce permission requirements for widget filesystem.

Affected Software

Affected Software

Opera version prior to 10.54 on Windows.

Solution

Solution

Upgrade to Opera 10.54 or later.

Common Vulnerabilities and Exposures (CVE)