CVE-2004-1490Browser vulnerability

4 documents4 sources
Severity
2.6LOWNVD
EPSS
1.1%
top 21.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 29

Description

Opera 7.54 and earlier allows remote attackers to spoof file types in the download dialog via dots and non-breaking spaces (ASCII character code 160) in the (1) Content-Disposition or (2) Content-Type headers.

CVSS vector

AV:N/AC:H/C:N/I:P/A:NExploitability: 4.9 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f44x-mffr-9h8r: Opera 72022-04-29
CVEList
CVE-2004-1490: Opera 72005-02-17

💥Exploits & PoCs

1
Exploit-DB
Sendmail 8.12.x - 'X-header' Remote Heap Buffer Overflow (PoC)2009-05-27
CVE-2004-1490 — Opera Browser vulnerability | cvebase