6.8
CVE-2012-4143
- EPSS 0.67%
- Veröffentlicht 06.08.2012 16:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Opera before 12.01 on Windows and UNIX, and before 11.66 and 12.x before 12.01 on Mac OS X, allows user-assisted remote attackers to trick users into downloading and executing arbitrary files via a small window for the download dialog, a different vulnerability than CVE-2012-1924.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Opera ≫ Opera Browser Version <= 12.00
Opera ≫ Opera Browser Version12.00 Updatebeta
Opera ≫ Opera Browser Version <= 11.65
Opera ≫ Opera Browser Version10.00
Opera ≫ Opera Browser Version10.00 Updatebeta1
Opera ≫ Opera Browser Version10.00 Updatebeta2
Opera ≫ Opera Browser Version10.00 Updatebeta3
Opera ≫ Opera Browser Version10.01
Opera ≫ Opera Browser Version10.10
Opera ≫ Opera Browser Version10.10 Updatebeta1
Opera ≫ Opera Browser Version10.11
Opera ≫ Opera Browser Version10.50
Opera ≫ Opera Browser Version10.50 Updatebeta1
Opera ≫ Opera Browser Version10.50 Updatebeta2
Opera ≫ Opera Browser Version10.51
Opera ≫ Opera Browser Version10.52
Opera ≫ Opera Browser Version10.52 Updatebeta1
Opera ≫ Opera Browser Version10.52 Updatebeta2
Opera ≫ Opera Browser Version10.53
Opera ≫ Opera Browser Version10.53 Updateb
Opera ≫ Opera Browser Version10.53 Updatebeta1
Opera ≫ Opera Browser Version10.54
Opera ≫ Opera Browser Version10.60
Opera ≫ Opera Browser Version10.60 Updatebeta1
Opera ≫ Opera Browser Version10.61
Opera ≫ Opera Browser Version10.62
Opera ≫ Opera Browser Version10.63
Opera ≫ Opera Browser Version11.00
Opera ≫ Opera Browser Version11.00 Updatebeta
Opera ≫ Opera Browser Version11.01
Opera ≫ Opera Browser Version11.10
Opera ≫ Opera Browser Version11.10 Updatebeta
Opera ≫ Opera Browser Version11.11
Opera ≫ Opera Browser Version11.50
Opera ≫ Opera Browser Version11.50 Updatebeta
Opera ≫ Opera Browser Version11.51
Opera ≫ Opera Browser Version11.52
Opera ≫ Opera Browser Version11.52.1100
Opera ≫ Opera Browser Version11.60
Opera ≫ Opera Browser Version11.60 Updatebeta
Opera ≫ Opera Browser Version11.61
Opera ≫ Opera Browser Version11.62
Opera ≫ Opera Browser Version11.64
Opera ≫ Opera Browser Version12.00
Opera ≫ Opera Browser Version12.00 Updatebeta
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.67% | 0.689 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
CWE-94 Improper Control of Generation of Code ('Code Injection')
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.