Anfälligkeitssuche        Suche in 187964 CVE Beschreibungen
und 85075 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.14244
Kategorie:Windows
Titel:Opera web browser address bar spoofing weakness
Zusammenfassung:The remote host is using Opera - an alternative web browser.;; This version of Opera is vulnerable to a security weakness; that may permit malicious web pages to spoof address bar information.;; This is reportedly possible through malicious use of the; JavaScript 'unOnload' event handler when the browser; is redirected to another page.;; This issue could be exploited to spoof the domain of a malicious web page,; potentially causing the victim user to trust the spoofed domain.
Beschreibung:Summary:
The remote host is using Opera - an alternative web browser.

This version of Opera is vulnerable to a security weakness
that may permit malicious web pages to spoof address bar information.

This is reportedly possible through malicious use of the
JavaScript 'unOnload' event handler when the browser
is redirected to another page.

This issue could be exploited to spoof the domain of a malicious web page,
potentially causing the victim user to trust the spoofed domain.

Solution:
Install Opera 7.50 or newer.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:P/A:N

Querverweis: BugTraq ID: 10337
Common Vulnerability Exposure (CVE) ID: CVE-2004-2260
http://www.securityfocus.com/bid/10337
http://secunia.com/secunia_research/2004-2/advisory/
http://www.osvdb.org/6108
http://secunia.com/advisories/11532
XForce ISS Database: opera-onunload-url-spoofing(16131)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16131
CopyrightCopyright (C) 2004 David Maciejak

Dies ist nur einer von 85075 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2020 E-Soft Inc. Alle Rechte vorbehalten.