Computer Security
[EN] securityvulns.ru
no-pyccku



Multiple Opera Mail agent vulnerabilities
Published:21.09.2005
Source:BUGTRAQ
SecurityVulns ID:5231
Type:client
Level:6/10
Description:Attached files are opened from local cache making it's possible to execute javascript in context of "file://". By adding ',' character to file extension it's possible to bypass content filtering.
Affected:OPERA : Opera 8.02
Original documentdocumentSECUNIA, Secunia Research: Opera Mail Client Attachment Spoofing and ScriptInsertion (21.09.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru