Page 24 of 235 results (0.017 seconds)

CVSS: 9.3EPSS: 2%CPEs: 1EXPL: 0

31 Dec 2003 — Buffer overflow in Opera 7.02 Build 2668 allows remote attackers to crash Opera via a long HTTP request ending in a .ZIP extension. • http://archives.neohapsis.com/archives/bugtraq/2003-04/0116.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 9.8EPSS: 3%CPEs: 1EXPL: 2

31 Dec 2003 — Heap-based buffer overflow in Opera 6.05 through 7.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a filename with a long extension. • https://www.exploit-db.com/exploits/22550 • CWE-787: Out-of-bounds Write •

CVSS: 7.5EPSS: 5%CPEs: 6EXPL: 2

31 Dec 2003 — The PluginContext object of Opera 6.05 and 7.0 allows remote attackers to cause a denial of service (crash) via an HTTP request containing a long string that gets passed to the ShowDocument method. • https://www.exploit-db.com/exploits/22240 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

31 Dec 2003 — Cross-site scripting (XSS) vulnerability in Opera 6.0 through 7.0 with automatic redirection disabled allows remote attackers to inject arbitrary web script or HTML via the HTTP Location header. • http://www.securityfocus.com/archive/1/313216 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 9.8EPSS: 11%CPEs: 2EXPL: 3

21 Oct 2003 — Heap-based buffer overflow in Opera 7.11 and 7.20 allows remote attackers to execute arbitrary code via an HREF with a large number of escaped characters in the server name. Desbordamiento de búfer en Opera 7.11 y 7.20 permite a atacantes remotos ejecutar código arbitrario mediante un HREF con un número de largo de caractéres escapados en el nombre del servidor. • https://www.exploit-db.com/exploits/23263 • CWE-787: Out-of-bounds Write •