CVE-2008-2716
Summary
| CVE | CVE-2008-2716 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-06-16 22:41:00 UTC |
| Updated | 2022-03-01 15:05:00 UTC |
| Description | Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of trusted frames on the same parent page by modifying the location, which can facilitate phishing attacks. |
Risk And Classification
Problem Types: CWE-1021
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Opera | Opera Browser | All | All | All | All |
| Application | Opera Software | Opera | 9.0 | All | All | All |
| Application | Opera Software | Opera | 9.0 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.0 | beta_2 | All | All |
| Application | Opera Software | Opera | 9.01 | All | All | All |
| Application | Opera Software | Opera | 9.01 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.02 | All | All | All |
| Application | Opera Software | Opera | 9.10 | All | All | All |
| Application | Opera Software | Opera | 9.2 | All | All | All |
| Application | Opera Software | Opera | 9.2 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.21 | All | All | All |
| Application | Opera Software | Opera | 9.22 | All | All | All |
| Application | Opera Software | Opera | 9.23 | All | All | All |
| Application | Opera Software | Opera | 9.24 | All | All | All |
| Application | Opera Software | Opera | 9.25 | All | All | All |
| Application | Opera Software | Opera | 9.26 | All | All | All |
| Application | Opera Software | Opera | 9.27 | All | All | All |
| Application | Opera Software | Opera | 9.0 | All | All | All |
| Application | Opera Software | Opera | 9.0 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.0 | beta_2 | All | All |
| Application | Opera Software | Opera | 9.01 | All | All | All |
| Application | Opera Software | Opera | 9.01 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.02 | All | All | All |
| Application | Opera Software | Opera | 9.10 | All | All | All |
| Application | Opera Software | Opera | 9.2 | All | All | All |
| Application | Opera Software | Opera | 9.2 | beta_1 | All | All |
| Application | Opera Software | Opera | 9.21 | All | All | All |
| Application | Opera Software | Opera | 9.22 | All | All | All |
| Application | Opera Software | Opera | 9.23 | All | All | All |
| Application | Opera Software | Opera | 9.24 | All | All | All |
| Application | Opera Software | Opera | 9.25 | All | All | All |
| Application | Opera Software | Opera | 9.26 | All | All | All |
| Application | Opera Software | Opera | 9.27 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Advisory: Pages held in frames are able to change the location of pages in unrelated frames on the parent page - Opera Knowledge Base | CONFIRM | www.opera.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Opera Multiple Vulnerabilities - Secunia Advisories - Vulnerability Intelligence - Secunia.com | SECUNIA | secunia.com | Vendor Advisory |
| Opera Lets Frames Modify the Location of Other Frames in a Page - SecurityTracker | SECTRACK | www.securitytracker.com | |
| Opera 9.5 for Linux Changelog | CONFIRM | www.opera.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| [security-announce] SUSE Security Announcement: Opera 9.50 (SUSE-SA:2008 | SUSE | lists.opensuse.org | |
| SUSE update for opera - Secunia Advisories - Vulnerability Intelligence - Secunia.com | SECUNIA | secunia.com | |
| Opera Web Browser 9.27 Multiple Security Vulnerabilities | BID | www.securityfocus.com | Patch |
| Opera 9.5 for Windows Changelog | CONFIRM | www.opera.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.