CVE-2009-3832Open Redirect in Browser

CWE-601Open Redirect3 documents3 sources
Severity
5.8MEDIUMNVD
EPSS
1.2%
top 20.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 30
Latest updateMay 2

Description

Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own user interface, which allows remote attackers to spoof the address field via a crafted web site.

CVSS vector

AV:N/AC:M/C:N/I:P/A:PExploitability: 8.6 | Impact: 4.9

Affected Packages1 packages

NVDopera/opera_browser< 10.01

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vfqw-xwh7-w232: Opera before 102022-05-02
CVEList
CVE-2009-3832: Opera before 102009-10-30
CVE-2009-3832 — Open Redirect in Opera Browser | cvebase