Lucene search

K
cve[email protected]CVE-2004-1491
HistoryFeb 17, 2005 - 5:00 a.m.

CVE-2004-1491

2005-02-1705:00:00
web.nvd.nist.gov
35
cve-2004-1491
opera 7.54
kfmclient exec
arbitrary code execution
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7.5 High

AI Score

Confidence

Low

0.045 Low

EPSS

Percentile

92.5%

Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry.

Affected configurations

NVD
Node
operaopera_browserRange7.54
Node
gentoolinux
OR
kdekdeMatch3.2.3
OR
susesuse_linuxMatch1.0
OR
susesuse_linuxMatch2.0
OR
susesuse_linuxMatch3.0
OR
susesuse_linuxMatch4.0
OR
susesuse_linuxMatch4.2
OR
susesuse_linuxMatch4.3
OR
susesuse_linuxMatch4.4
OR
susesuse_linuxMatch4.4.1
OR
susesuse_linuxMatch5.0
OR
susesuse_linuxMatch5.1
OR
susesuse_linuxMatch5.2
OR
susesuse_linuxMatch5.3
OR
susesuse_linuxMatch6.0
OR
susesuse_linuxMatch6.1
OR
susesuse_linuxMatch6.1alpha
OR
susesuse_linuxMatch6.2
OR
susesuse_linuxMatch6.3
OR
susesuse_linuxMatch6.3alpha
OR
susesuse_linuxMatch6.4
OR
susesuse_linuxMatch6.4alpha
OR
susesuse_linuxMatch7.0
OR
susesuse_linuxMatch7.0alpha
OR
susesuse_linuxMatch7.1
OR
susesuse_linuxMatch7.1alpha
OR
susesuse_linuxMatch7.2
OR
susesuse_linuxMatch7.3
OR
susesuse_linuxMatch8.0
OR
susesuse_linuxMatch8.1
OR
susesuse_linuxMatch8.2
OR
susesuse_linuxMatch9.0
OR
susesuse_linuxMatch9.1
OR
susesuse_linuxMatch9.2

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7.5 High

AI Score

Confidence

Low

0.045 Low

EPSS

Percentile

92.5%