Búsqueda de    
Vulnerabilidad   
    Buscar 172616 Descripciones CVE y
81291 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.801140
Categoría:Denial of Service
Título:Opera Multiple Vulnerabilities - Nov09 (Windows)
Resumen:This host is installed with Opera Web Browser and is prone to; multiple vulnerabilities.
Descripción:Summary:
This host is installed with Opera Web Browser and is prone to
multiple vulnerabilities.

Vulnerability Insight:
- An error when processing domain names can be exploited to cause a memory
corruption.

- An error when processing web fonts can be exploited to change the font of
the address field and display an arbitrary domain name as an address.

Vulnerability Impact:
Attacker can exploit this issue to disclose sensitive information, conduct
spoofing attacks, Denial of Service or compromise a user's system.

Affected Software/OS:
Opera version prior to 10.01 on Windows.

Solution:
Upgrade to Opera version 10.01 or later.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: BugTraq ID: 36850
Common Vulnerability Exposure (CVE) ID: CVE-2009-3831
http://www.securityfocus.com/bid/36850
http://www.osvdb.org/59357
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6574
http://secunia.com/advisories/37182
http://www.vupen.com/english/advisories/2009/3073
XForce ISS Database: opera-domain-names-code-execution(54020)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54020
Common Vulnerability Exposure (CVE) ID: CVE-2009-3832
http://www.osvdb.org/59359
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6384
XForce ISS Database: opera-web-fonts-spoofing(54022)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54022
CopyrightCopyright (C) 2009 Greenbone Networks GmbH

Esta es sólo una de 81291 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2020 E-Soft Inc. Todos los derechos reservados.