Lucene search

K
cveMitreCVE-2005-2407
HistoryAug 01, 2005 - 4:00 a.m.

CVE-2005-2407

2005-08-0104:00:00
CWE-1021
mitre
web.nvd.nist.gov
44
opera
design error
arbitrary code execution
link hijacking
security vulnerability

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

High

EPSS

0.007

Percentile

80.3%

A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary code by overlaying a malicious new window above a file download dialog box, then tricking the user into double-clicking on the “Run” button, aka “link hijacking”.

Affected configurations

Nvd
Node
operaopera_browserRange8.01
VendorProductVersionCPE
operaopera_browsercpe:/a:opera:opera_browser::::

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.3

Confidence

High

EPSS

0.007

Percentile

80.3%

Related for CVE-2005-2407