4.3
CVE-2012-4142
- EPSS 0.42%
- Published 06.08.2012 16:55:06
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Opera before 12.01 on Windows and UNIX, and before 11.66 and 12.x before 12.01 on Mac OS X, ignores some characters in HTML documents in unspecified circumstances, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.
Data is provided by the National Vulnerability Database (NVD)
Opera ≫ Opera Browser Version <= 12.00
Opera ≫ Opera Browser Version12.00 Updatebeta
Opera ≫ Opera Browser Version <= 11.65
Opera ≫ Opera Browser Version10.00
Opera ≫ Opera Browser Version10.00 Updatebeta1
Opera ≫ Opera Browser Version10.00 Updatebeta2
Opera ≫ Opera Browser Version10.00 Updatebeta3
Opera ≫ Opera Browser Version10.01
Opera ≫ Opera Browser Version10.10
Opera ≫ Opera Browser Version10.10 Updatebeta1
Opera ≫ Opera Browser Version10.11
Opera ≫ Opera Browser Version10.50
Opera ≫ Opera Browser Version10.50 Updatebeta1
Opera ≫ Opera Browser Version10.50 Updatebeta2
Opera ≫ Opera Browser Version10.51
Opera ≫ Opera Browser Version10.52
Opera ≫ Opera Browser Version10.52 Updatebeta1
Opera ≫ Opera Browser Version10.52 Updatebeta2
Opera ≫ Opera Browser Version10.53
Opera ≫ Opera Browser Version10.53 Updateb
Opera ≫ Opera Browser Version10.53 Updatebeta1
Opera ≫ Opera Browser Version10.54
Opera ≫ Opera Browser Version10.60
Opera ≫ Opera Browser Version10.60 Updatebeta1
Opera ≫ Opera Browser Version10.61
Opera ≫ Opera Browser Version10.62
Opera ≫ Opera Browser Version10.63
Opera ≫ Opera Browser Version11.00
Opera ≫ Opera Browser Version11.00 Updatebeta
Opera ≫ Opera Browser Version11.01
Opera ≫ Opera Browser Version11.10
Opera ≫ Opera Browser Version11.10 Updatebeta
Opera ≫ Opera Browser Version11.11
Opera ≫ Opera Browser Version11.50
Opera ≫ Opera Browser Version11.50 Updatebeta
Opera ≫ Opera Browser Version11.51
Opera ≫ Opera Browser Version11.52
Opera ≫ Opera Browser Version11.52.1100
Opera ≫ Opera Browser Version11.60
Opera ≫ Opera Browser Version11.60 Updatebeta
Opera ≫ Opera Browser Version11.61
Opera ≫ Opera Browser Version11.62
Opera ≫ Opera Browser Version11.64
Opera ≫ Opera Browser Version12.00
Opera ≫ Opera Browser Version12.00 Updatebeta
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.42% | 0.589 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.