Total
285 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2011-2626 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Opera before 11.50 allows remote attackers to cause a denial of service (application crash) by using "injected script" to set the SRC attribute of an IFRAME element. | |||||
CVE-2011-2630 | 1 Opera | 1 Opera Browser | 2011-07-07 | 4.3 MEDIUM | N/A |
Opera before 11.11 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted web page that is not properly handled during a reload occurring after the opening of a popup of the Easy Sticky Note extension. | |||||
CVE-2011-2629 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Opera before 11.11 allows remote attackers to cause a denial of service (application crash) via unknown content on a web page, as demonstrated by www.falk.de. | |||||
CVE-2011-2633 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Opera before 11.11 allows remote attackers to cause a denial of service (application crash) via vectors involving a Certificate Revocation List (CRL) file, as demonstrated by the multicert-ca-02.crl file. | |||||
CVE-2011-2623 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the SVG BiDi implementation in Opera before 11.50 allows remote attackers to cause a denial of service (application crash or hang) via unknown vectors. | |||||
CVE-2011-2636 | 1 Opera | 1 Opera Browser | 2011-07-05 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Opera before 11.10 allows remote attackers to cause a denial of service (application crash) via unknown content on a web page, as demonstrated by a certain Tomato Firmware page. | |||||
CVE-2011-2638 | 1 Opera | 1 Opera Browser | 2011-07-05 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Opera before 11.10 allows remote attackers to cause a denial of service (application crash) via unknown content on a web page, as demonstrated by games on zylom.com. | |||||
CVE-2011-2637 | 1 Opera | 1 Opera Browser | 2011-07-05 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Opera before 11.10 allows remote attackers to cause a denial of service (application crash) via unknown content on a web page, as demonstrated by futura-sciences.com, seoptimise.com, and mitosyfraudes.org. | |||||
CVE-2011-2635 | 1 Opera | 1 Opera Browser | 2011-07-05 | 5.0 MEDIUM | N/A |
The Cascading Style Sheets (CSS) implementation in Opera before 11.10 allows remote attackers to cause a denial of service (application crash) via vectors involving use of the :hover pseudo-class, in conjunction with transforms, for a floated element. | |||||
CVE-2011-2641 | 1 Opera | 1 Opera Browser | 2011-07-04 | 5.0 MEDIUM | N/A |
Opera 11.11 allows remote attackers to cause a denial of service (application crash) by setting the FACE attribute of a FONT element within an IFRAME element after changing the SRC attribute of this IFRAME element to an about:blank value. | |||||
CVE-2011-2639 | 1 Opera | 1 Opera Browser | 2011-07-04 | 5.0 MEDIUM | N/A |
Opera before 11.10 does not properly handle hidden animated GIF images, which allows remote attackers to cause a denial of service (CPU consumption) via an image file that triggers continual repaints. | |||||
CVE-2007-0127 | 1 Opera | 1 Opera Browser | 2011-03-06 | 9.3 HIGH | N/A |
The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remote attackers to execute arbitrary code via JavaScript code that uses an invalid object in this request that causes a controlled pointer to be referenced during the virtual function call. | |||||
CVE-2008-4196 | 1 Opera | 1 Opera Browser | 2011-02-01 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Opera before 9.52 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |||||
CVE-2010-4580 | 1 Opera | 1 Opera Browser | 2011-01-21 | 5.0 MEDIUM | N/A |
Opera before 11.00 does not clear WAP WML form fields after manual navigation to a new web site, which allows remote attackers to obtain sensitive information via an input field that has the same name as an input field on a previously visited web site. | |||||
CVE-2010-4581 | 1 Opera | 1 Opera Browser | 2011-01-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in Opera before 11.00 has unknown impact and attack vectors, related to "a high severity issue." | |||||
CVE-2010-4584 | 1 Opera | 1 Opera Browser | 2011-01-21 | 2.6 LOW | N/A |
Opera before 11.00, when Opera Turbo is used, does not properly present information about problematic X.509 certificates on https web sites, which might make it easier for remote attackers to spoof trusted content via a crafted web site. | |||||
CVE-2010-4585 | 1 Opera | 1 Opera Browser | 2011-01-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the auto-update functionality in Opera before 11.00 allows remote attackers to cause a denial of service (application crash) by triggering an Opera Unite update. | |||||
CVE-2010-4586 | 1 Opera | 1 Opera Browser | 2011-01-21 | 10.0 HIGH | N/A |
The default configuration of Opera before 11.00 enables WebSockets functionality, which has unspecified impact and remote attack vectors, possibly a related issue to CVE-2010-4508. | |||||
CVE-2010-4582 | 1 Opera | 1 Opera Browser | 2011-01-21 | 5.0 MEDIUM | N/A |
Opera before 11.00 does not properly handle security policies during updates to extensions, which might allow remote attackers to bypass intended access restrictions via unspecified vectors. | |||||
CVE-2010-4583 | 1 Opera | 1 Opera Browser | 2011-01-21 | 2.6 LOW | N/A |
Opera before 11.00, when Opera Turbo is enabled, does not display a page's security indication, which makes it easier for remote attackers to spoof trusted content via a crafted web site. |