Computer Security
[EN] securityvulns.ru
no-pyccku



Opera 7 multiple bugs
updated since 04.02.2003
Published:15.12.2004
Source:NTBUGTRAQ
SecurityVulns ID:2571
Type:client
Level:7/10
Description:Crossite scripting (including local zone), local files access, mail access, user activity tracking, etc. Buffer overflow. Directory traversal. Files overwriting. Local files access with Location overwriting. Multiple Java bugs.
Affected:OPERA : Opera 7
 OPERA : Opera 6.05
 OPERA : Opera 7.01
 OPERA : Opera 7.02
 OPERA : Opera 6.06
 OPERA : Opera 7.10
 OPERA : Opera 7.11
 OPERA : Opera 7.20
 OPERA : Opera 7.21
 OPERA : Opera 7.22
 OPERA : Opera 7.23
 OPERA : Opera 7.53
 OPERA : Opera 7.54
Original documentdocumentGiovanni Delvecchio, [ZH2004-19SA] Possible execution of remote shell commands in Opera with kfmclien (15.12.2004)
 documentMarc Schönefeld, Java Vulnerabilities in Opera 7.54 (22.11.2004)
 documentGreyMagic Software, Opera Local File/Directory Detection (GM#009-OP) (19.08.2004)
 documentGreyMagic Software, Opera: Location, Location, Location (06.08.2004)
 documentGreyMagic Software, Opera: Location, Location, Location (06.08.2004)
 documentJakob Balle, Re: [Full-Disclosure] iDEFENSE Security Advisory 05.12.04: Opera Telnet URI Handler File Creation/Truncation Vulnerability (13.05.2004)
 documentIDEFENSE, [Full-Disclosure] iDEFENSE Security Advisory 05.12.04: Opera Telnet URI Handler File Creation/Truncation Vulnerability (13.05.2004)
 documentnesumin, [Opera 7] Arbitrary File Delete Vulnerability (24.12.2003)
 documentnesumin, [Opera 7] Arbitrary File Delete Vulnerability (15.12.2003)
 documentnesumin, [Opera 7] Arbitrary File Auto-Saved Vulnerability. (24.11.2003)
 documentJouko Pynnonen, [Full-Disclosure] Opera directory traversal and buffer overflow (22.11.2003)
 documentS G Masood, Opera Directory Traversal in Internal URI Protocol (Advisory) (13.11.2003)
 documentS G Masood, Opera Skinned & Opera Directory Traversal (Additional Details & a Simple Exploit) (13.11.2003)
 documentS G Masood, Opera Skinned : Arbitrary File Dropping And Execution (Advisory) (13.11.2003)
 documentL0PHT, Opera HREF escaped server name overflow (23.10.2003)
 documentnesumin, [Opera 7] Five DoS codes on general web sites (01.07.2003)
 documentBreakp0int, Buffer overflow (15.05.2003)
 documentJakob Balle, Secunia Research: Opera browser filename extension buffer overflows (13.05.2003)
 documentnesumin, [Opera 7] Yet Another Story of "Phantom of the Opera" (29.04.2003)
 documentnesumin, [Opera 7/6] Long File Extension Heap Buffer Overrun Vulnerability in Download. (29.04.2003)
 documentDavid F.Madrid, Unchecked Buffer in Opera 7.02 (08.04.2003)
 documentidoru_(at)_VIDEOSOFT.NET.UY, Using Java from Javascript (05.04.2003)
 documentnesumin, [Opera 7/6] Long Filename Buffer Overflow Vulnerability in Download (12.03.2003)
 documentJakob Balle, Secunia Research: Opera browser Cross Site Scripting (26.02.2003)
 documentnesumin, Opera Username Buffer Overflow Vulnerability (11.02.2003)
 documentMarc Schönefeld, Java-Applet crashes Opera 6.05 and 7.01 (11.02.2003)
 documentGreyMagic Software, Sniffing Opera's Tracks (GM#006-OP) (04.02.2003)
 documentGreyMagic Software, Opera: What's Next (GM#005-OP) (04.02.2003)
 documentGreyMagic Software, Opera Images (GM#004-OP) (04.02.2003)
 documentGreyMagic Software, Phantom of the Opera (GM#003-OP) (04.02.2003)
 documentGreyMagic Software, Opera's Security Model is Highly Vulnerable (GM#002-OP) (04.02.2003)
Files:Opera Username Buffer Overflow Exploit
 Opera Username Buffer Overflow Vulnerability (updated)
 Opera 6.06 user name buffer overflow demonstration
 This little program returns the addresses of LoadLibraryA() GetProcAddress(), and "jmp ESP" on your Windows.
 Sample exploit code of [Opera 7/6] Long Filename Buffer Overflow
 Opera java vulnerability demonstration
 Sample code of [Opera 7] Arbitrary File Auto-Saved Vulnerability
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server