Opera Web Browser Repeated Attempts Site Access Address Bar URI Spoofing Vulnerability
BID:56984
Info
Opera Web Browser Repeated Attempts Site Access Address Bar URI Spoofing Vulnerability
| Bugtraq ID: | 56984 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-6471 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 19 2012 12:00AM |
| Updated: | Mar 19 2015 09:48AM |
| Credit: | Masato Kinugawa |
| Vulnerable: |
Opera Software Opera Web Browser 12 Opera Software Opera Web Browser 11.64 Opera Software Opera Web Browser 11.62 Opera Software Opera Web Browser 11.61 Opera Software Opera Web Browser 11.60 Opera Software Opera Web Browser 11.51 Opera Software Opera Web Browser 11.50 Opera Software Opera Web Browser 11.11 Opera Software Opera Web Browser 11.10 Opera Software Opera Web Browser 11.01 Opera Software Opera Web Browser 11.00 Opera Opera Web Browser 11.52 Gentoo Linux |
| Not Vulnerable: | |
Discussion
Opera Web Browser Repeated Attempts Site Access Address Bar URI Spoofing Vulnerability
The Opera Web browser is affected by a URI-spoofing vulnerability because it fails to adequately handle user-supplied data.
An attacker may leverage this issue by inserting arbitrary content to spoof a URI presented to an unsuspecting user. This may lead to a false sense of trust because the victim may be presented with a URI of a seemingly trusted site while interacting with the attacker's malicious site.
Opera Web Browser versions prior to 12.12 are vulnerable.
The Opera Web browser is affected by a URI-spoofing vulnerability because it fails to adequately handle user-supplied data.
An attacker may leverage this issue by inserting arbitrary content to spoof a URI presented to an unsuspecting user. This may lead to a false sense of trust because the victim may be presented with a URI of a seemingly trusted site while interacting with the attacker's malicious site.
Opera Web Browser versions prior to 12.12 are vulnerable.
Solution / Fix
Opera Web Browser Repeated Attempts Site Access Address Bar URI Spoofing Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.