CVE-2010-4044Improper Input Validation in Browser

Severity
4.3MEDIUMNVD
EPSS
0.7%
top 27.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 21
Latest updateMay 17

Description

Opera before 10.63 does not ensure that the portion of a URL shown in the Address Bar contains the beginning of the URL, which allows remote attackers to spoof URLs by changing a window's size.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDopera/opera_browser10.62+70

🔴Vulnerability Details

2
GHSA
GHSA-867v-w3xj-wvq4: Opera before 102022-05-17
CVEList
CVE-2010-4044: Opera before 102010-10-21
CVE-2010-4044 — Improper Input Validation in Browser | cvebase