5.8

CVE-2009-4071

Opera before 10.10, when exception stacktraces are enabled, places scripting error messages from a web site into variables that can be read by a different web site, which allows remote attackers to obtain sensitive information or conduct cross-site scripting (XSS) attacks via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
OperaOpera Browser Updatebeta_1 Version <= 10.10
OperaOpera Browser Version7.0
OperaOpera Browser Version7.23
OperaOpera Browser Version7.53
OperaOpera Browser Version7.54
OperaOpera Browser Version7.60
OperaOpera Browser Version8.0
OperaOpera Browser Version8.01
OperaOpera Browser Version8.02
OperaOpera Browser Version8.50
OperaOpera Browser Version8.51
OperaOpera Browser Version8.52
OperaOpera Browser Version8.53
OperaOpera Browser Version8.54
OperaOpera Browser Version9.0
OperaOpera Browser Version9.01
OperaOpera Browser Version9.02
OperaOpera Browser Version9.10
OperaOpera Browser Version9.12
OperaOpera Browser Version9.20
OperaOpera Browser Version9.21
OperaOpera Browser Version9.22
OperaOpera Browser Version9.51
OperaOpera Browser Version9.52
OperaOpera Browser Version9.64
OperaOpera Browser Version10
OperaOpera Browser Version10.00
OperaOpera Browser Version10.00 Updatebeta_3
OperaOpera Browser Version10.01
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.76% 0.709
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.8 8.6 4.9
AV:N/AC:M/Au:N/C:P/I:P/A:N