VendorsOperaopera_browser6.06
Vulnerabilities

Opera Browser 6.06

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

166CVEs
CVE-2010-4047
Opera before 10.63 does not properly select the security context of JavaScript code associated with an error page, which allows user-assisted remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site.
Published 2010-10-21 · Modified
4.3EPSS 0.010
CVE-2012-3562
Opera before 12.00 Beta allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted web page that is not properly handled during a reload, as demonstrated by a "multiple origin camera test" page.
Published 2012-06-14 · Modified
4.3EPSS 0.008
CVE-2012-3558
Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during unusually timed changes to this field, which makes it easier for user-assisted remote attackers to conduct spoofing attacks via vectors involving navigation, reloads, and redirects.
Published 2012-06-14 · Modified
2.6EPSS 0.018
CVE-2010-4583
Opera before 11.00, when Opera Turbo is enabled, does not display a page's security indication, which makes it easier for remote attackers to spoof trusted content via a crafted web site.
Published 2010-12-22 · Modified
2.6EPSS 0.014
CVE-2010-4584
Opera before 11.00, when Opera Turbo is used, does not properly present information about problematic X.509 certificates on https web sites, which might make it easier for remote attackers to spoof trusted content via a crafted web site.
Published 2010-12-22 · Modified
2.6EPSS 0.009
CVE-2011-0685
The Delete Private Data feature in Opera before 11.01 does not properly implement the "Clear all email account passwords" option, which might allow physically proximate attackers to access an e-mail account via an unattended workstation.
Published 2011-01-31 · Modified
2.1EPSS 0.004
← Prev5 / 5