The intent: URL implementation in Opera before 18 on Android allows attackers to read local files by leveraging an interaction error, as demonstrated by reading stored cookies.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2014-02-06 14:55
Updated : 2017-08-28 18:34
NVD link : CVE-2014-0815
Mitre link : CVE-2014-0815
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
- android
opera
- opera_browser