Opera before 10.60 does not properly restrict certain interaction between plug-ins, file inputs, and the clipboard, which allows user-assisted remote attackers to trigger the uploading of arbitrary files via a crafted web site.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-07-08 05:54
Updated : 2018-10-30 09:26
NVD link : CVE-2010-2658
Mitre link : CVE-2010-2658
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
opera
- opera_browser