CVE-2011-0450 — Browser vulnerability

4 documents4 sources
Severity
7.6HIGHNVD
EPSS
3.7%
top 11.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 31
Latest updateMay 17

Description

The downloads manager in Opera before 11.01 on Windows does not properly determine the pathname of the filesystem-viewing application, which allows user-assisted remote attackers to execute arbitrary code via a crafted web site that hosts an executable file.

CVSS vector

AV:N/AC:H/C:C/I:C/A:CExploitability: 4.9 | Impact: 10.0

Affected Packages1 packages

â–¶NVDopera/opera_browser11.00+73

🔴Vulnerability Details

2
GHSA
GHSA-8f9p-pm99-g8q8: The downloads manager in Opera before 11↗2022-05-17
â–¶
CVEList
CVE-2011-0450: The downloads manager in Opera before 11↗2011-01-31
â–¶

💥Exploits & PoCs

1
Exploit-DB
BlazeVideo HDTV Player 6.6 Professional - Universal ASLR + DEP Bypass↗2011-10-07
â–¶
CVE-2011-0450 — Opera Browser vulnerability | cvebase