Opera Browser vulnerabilities
274 known vulnerabilities affecting opera/opera_browser.
Total CVEs
274
CISA KEV
0
Public exploits
26
Exploited in wild
1
Severity breakdown
CRITICAL43HIGH23MEDIUM196LOW12
Vulnerabilities
Page 12 of 14
CVE-2006-6955MEDIUMCVSS 4.3v5.0v5.02+65 more2007-01-29
CVE-2006-6955 [MEDIUM] CWE-20 CVE-2006-6955: Opera allows remote attackers to cause a denial of service (application crash) via a web page that c
Opera allows remote attackers to cause a denial of service (application crash) via a web page that contains a large number of nested marquee tags, a related issue to CVE-2006-2723.
nvd
CVE-2007-0126CRITICALCVSS 9.3PoCv9.022007-01-09
CVE-2007-0126 [CRITICAL] CWE-119 CVE-2007-0126: Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPE
Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPEG file with an invalid number of index bytes in the Define Huffman Table (DHT) marker.
nvd
CVE-2007-0127CRITICALCVSS 9.3≤ 9.02v1.00+55 more2007-01-09
CVE-2007-0127 [CRITICAL] CWE-94 CVE-2007-0127: The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createS
The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remote attackers to execute arbitrary code via JavaScript code that uses an invalid object in this request that causes a controlled pointer to be referenced during the virtual function call.
nvd
CVE-2006-4819MEDIUMCVSS 5.1v9.0v9.012006-10-17
CVE-2006-4819 [MEDIUM] CWE-119 CVE-2006-4819: Heap-based buffer overflow in Opera 9.0 and 9.01 allows remote attackers to execute arbitrary code v
Heap-based buffer overflow in Opera 9.0 and 9.01 allows remote attackers to execute arbitrary code via a long URL in a tag (long link address).
nvd
CVE-2006-3945MEDIUMCVSS 5.0v9.02006-07-31
CVE-2006-3945 [MEDIUM] CWE-787 CVE-2006-3945: The CSS functionality in Opera 9 on Windows XP SP2 allows remote attackers to cause a denial of serv
The CSS functionality in Opera 9 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by setting the background property of a DHTML element to a long http or https URL, which triggers memory corruption.
nvd
CVE-2006-3353MEDIUMCVSS 5.0PoCfixed in 9.012006-07-06
CVE-2006-3353 [MEDIUM] CWE-119 CVE-2006-3353: Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that tri
Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to an iframe and JavaScript that accesses certain style sheets properties.
nvd
CVE-2006-3331MEDIUMCVSS 5.0fixed in 9.02006-06-30
CVE-2006-3331 [MEDIUM] CVE-2006-3331: Opera before 9.0 does not reset the SSL security bar after displaying a download dialog from an SSL-
Opera before 9.0 does not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to spoof a trusted SSL certificate from an untrusted website and facilitates phishing attacks.
nvd
CVE-2006-3198HIGHCVSS 7.5≤ 8.5.42006-06-23
CVE-2006-3198 [HIGH] CWE-190 CVE-2006-3198: Integer overflow in Opera 8.54 and earlier allows remote attackers to execute arbitrary code via a J
Integer overflow in Opera 8.54 and earlier allows remote attackers to execute arbitrary code via a JPEG image with large height and width values, which causes less memory to be allocated than intended.
nvd
CVE-2006-3199MEDIUMCVSS 5.0PoCv9.02006-06-23
CVE-2006-3199 [MEDIUM] CWE-119 CVE-2006-3199: Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attri
Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attribute with a URL containing a long hostname, which triggers an out-of-bounds operation.
nvd
CVE-2006-1834MEDIUMCVSS 5.1PoC≤ 8.53v1.00+51 more2006-04-19
CVE-2006-1834 [MEDIUM] CWE-189 CVE-2006-1834: Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via
Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass a length check. NOTE: a sign extension problem makes the attack easier with shorter strings.
nvd
CVE-2005-4718MEDIUMCVSS 5.0PoC≤ 8.022005-12-31
CVE-2005-4718 [MEDIUM] CVE-2005-4718: Opera 8.02 and earlier allows remote attackers to cause a denial of service (client crash) via (1) a
Opera 8.02 and earlier allows remote attackers to cause a denial of service (client crash) via (1) a crafted HTML file with a "content: url(0);" style attribute, a "bodyA" tag, a long string, and a "u" tag with a long attribute, as demonstrated by opera.html; and (2) a BGSOUND element with a "margin:-99;" STYLE attribute.
nvd
CVE-2005-4210MEDIUMCVSS 5.0fixed in 8.512005-12-13
CVE-2005-4210 [MEDIUM] CVE-2005-4210: Opera before 8.51, when running on Windows with Input Method Editor (IME) installed, allows remote a
Opera before 8.51, when running on Windows with Input Method Editor (IME) installed, allows remote attackers to cause a denial of service (persistent application crash) by bookmarking a site with a long title.
nvd
CVE-2005-3946MEDIUMCVSS 5.0v8.502005-12-01
CVE-2005-3946 [MEDIUM] CWE-20 CVE-2005-3946: Opera 8.50 allows remote attackers to cause a denial of service (crash) via a Java applet with a lar
Opera 8.50 allows remote attackers to cause a denial of service (crash) via a Java applet with a large string argument to the removeMember JNI method for the com.opera.JSObject class.
nvd
CVE-2005-3750HIGHCVSS 7.5fixed in 8.512005-11-22
CVE-2005-3750 [HIGH] CWE-74 CVE-2005-3750: Opera before 8.51 on Linux and Unix systems allows remote attackers to execute arbitrary code via sh
Opera before 8.51 on Linux and Unix systems allows remote attackers to execute arbitrary code via shell metacharacters (backticks) in a URL that another product provides in a command line argument when launching Opera.
nvd
CVE-2005-3699MEDIUMCVSS 5.0v8.0v8.01+2 more2005-11-21
CVE-2005-3699 [MEDIUM] CVE-2005-3699: Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status
Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site.
nvd
CVE-2005-3059CRITICALCVSS 10.0v8.502005-09-26
CVE-2005-3059 [CRITICAL] CVE-2005-3059: Multiple unspecified vulnerabilities in Opera 8.50 on Linux and Windows have unknown impact and atta
Multiple unspecified vulnerabilities in Opera 8.50 on Linux and Windows have unknown impact and attack vectors, related to (1) " handling of must-revalidate cache directive for HTTPS pages" or (2) a "display issue with cookie comment encoding."
nvd
CVE-2005-3041MEDIUMCVSS 5.0fixed in 8.502005-09-22
CVE-2005-3041 [MEDIUM] CVE-2005-3041: Unspecified "drag-and-drop vulnerability" in Opera Web Browser before 8.50 on Windows allows "uninte
Unspecified "drag-and-drop vulnerability" in Opera Web Browser before 8.50 on Windows allows "unintentional file uploads."
nvd
CVE-2005-3006MEDIUMCVSS 5.0≤ 8.02v1.00+47 more2005-09-21
CVE-2005-3006 [MEDIUM] CVE-2005-3006: The mail client in Opera before 8.50 opens attached files from the user's cache directory without wa
The mail client in Opera before 8.50 opens attached files from the user's cache directory without warning the user, which might allow remote attackers to inject arbitrary web script and spoof attachment filenames.
nvd
CVE-2005-3007LOWCVSS 2.6fixed in 8.502005-09-21
CVE-2005-3007 [LOW] CWE-74 CVE-2005-3007: Opera before 8.50 allows remote attackers to spoof the content type of files via a filename with a t
Opera before 8.50 allows remote attackers to spoof the content type of files via a filename with a trailing "." (dot), which might allow remote attackers to trick users into processing dangerous content.
nvd
CVE-2005-2407MEDIUMCVSS 5.1≤ 8.012005-08-01
CVE-2005-2407 [MEDIUM] CWE-1021 CVE-2005-2407: A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary code by
A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary code by overlaying a malicious new window above a file download dialog box, then tricking the user into double-clicking on the "Run" button, aka "link hijacking".
nvd