PT-2004-3155 · Opera · Opera Browser+1
Publicado
2004-12-31
·
Atualizado
2022-02-28
·
CVE-2004-2260
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Opera Browser versions prior to 7.50
Description:
The issue allows remote attackers to redirect to other sites via the
onUnload attribute, potentially enabling malicious web site operators to misrepresent their content as someone else's, resulting in a loss of integrity. This is triggered when the onUnload body attribute is used to change the address bar information without leaving the current page.Recommendations:
For Opera Browser versions prior to 7.50, update to version 7.50 or later to resolve the issue. As a temporary workaround, consider disabling the use of the
onUnload attribute in web pages until the update is applied.Correção
Open Redirect
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Opera
Opera Browser