Page 2 of 13 results (0.002 seconds)

CVSS: 8.6EPSS: 3%CPEs: 1EXPL: 1

15 Nov 2001 — Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache. • https://www.exploit-db.com/exploits/21156 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

09 Jul 2001 — Opera 5.0 for Linux does not properly handle malformed HTTP headers, which allows remote attackers to cause a denial of service, possibly with a header whose value is the same as a MIME header name. • http://online.securityfocus.com/archive/1/196980 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

14 Aug 1998 — Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra / in the http:// tag. • http://www.securityfocus.com/archive/1/10320 •