Back to search
CVE-2004-2570
Published: Nov 22, 2005
Modified: Aug 8, 2024
PUBLISHED
Description
Opera before 7.54 allows remote attackers to modify properties and methods of the location object and execute Javascript to read arbitrary files from the client's local filesystem or display a false URL to the user.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.greymagic.com/security/advisories/gm008-op/
x_refsource_MISC
12233
third-party-advisory
x_refsource_SECUNIA
opera-location-method-overwrite(16904)
vdb-entry
x_refsource_XF
http://www.opera.com/docs/changelogs/windows/754/
x_refsource_CONFIRM
GLSA-200408-05
vendor-advisory
x_refsource_GENTOO
10873
vdb-entry
x_refsource_BID
8331
vdb-entry
x_refsource_OSVDB
20040805 Opera: Location, Location, Location
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now