Lucene search

K
cve[email protected]CVE-2012-1926
HistoryMar 28, 2012 - 3:22 a.m.

CVE-2012-1926

2012-03-2803:22:10
CWE-200
web.nvd.nist.gov
31
opera
same origin policy
cve-2012-1926
security vulnerability
cross-domain frames

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7.2

Confidence

High

EPSS

0.009

Percentile

82.4%

Opera before 11.62 allows remote attackers to bypass the Same Origin Policy via the (1) history.pushState and (2) history.replaceState functions in conjunction with cross-domain frames, leading to unintended read access to history.state information.

Affected configurations

NVD
Node
operaopera_browserRange11.61
OR
operaopera_browserMatch5.0
OR
operaopera_browserMatch5.0beta2
OR
operaopera_browserMatch5.0beta3
OR
operaopera_browserMatch5.0beta4
OR
operaopera_browserMatch5.0beta5
OR
operaopera_browserMatch5.0beta6
OR
operaopera_browserMatch5.0beta7
OR
operaopera_browserMatch5.0beta8
OR
operaopera_browserMatch5.02
OR
operaopera_browserMatch5.10
OR
operaopera_browserMatch5.11
OR
operaopera_browserMatch5.12
OR
operaopera_browserMatch6.0
OR
operaopera_browserMatch6.0beta1
OR
operaopera_browserMatch6.0beta2
OR
operaopera_browserMatch6.0beta3
OR
operaopera_browserMatch6.0tp1
OR
operaopera_browserMatch6.0tp2
OR
operaopera_browserMatch6.0tp3
OR
operaopera_browserMatch6.1
OR
operaopera_browserMatch6.01
OR
operaopera_browserMatch6.1beta1
OR
operaopera_browserMatch6.02
OR
operaopera_browserMatch6.03
OR
operaopera_browserMatch6.04
OR
operaopera_browserMatch6.05
OR
operaopera_browserMatch6.06
OR
operaopera_browserMatch6.11
OR
operaopera_browserMatch6.12
OR
operaopera_browserMatch7.0
OR
operaopera_browserMatch7.0beta1
OR
operaopera_browserMatch7.0beta1_v2
OR
operaopera_browserMatch7.0beta2
OR
operaopera_browserMatch7.01
OR
operaopera_browserMatch7.02
OR
operaopera_browserMatch7.03
OR
operaopera_browserMatch7.10
OR
operaopera_browserMatch7.10beta1
OR
operaopera_browserMatch7.11
OR
operaopera_browserMatch7.11beta2
OR
operaopera_browserMatch7.20
OR
operaopera_browserMatch7.20beta7
OR
operaopera_browserMatch7.21
OR
operaopera_browserMatch7.22
OR
operaopera_browserMatch7.23
OR
operaopera_browserMatch7.50
OR
operaopera_browserMatch7.50beta1
OR
operaopera_browserMatch7.51
OR
operaopera_browserMatch7.52
OR
operaopera_browserMatch7.53
OR
operaopera_browserMatch7.54
OR
operaopera_browserMatch7.54update1
OR
operaopera_browserMatch7.54update2
OR
operaopera_browserMatch8.0
OR
operaopera_browserMatch8.0beta1
OR
operaopera_browserMatch8.0beta2
OR
operaopera_browserMatch8.0beta3
OR
operaopera_browserMatch8.01
OR
operaopera_browserMatch8.02
OR
operaopera_browserMatch8.50
OR
operaopera_browserMatch8.51
OR
operaopera_browserMatch8.52
OR
operaopera_browserMatch8.53
OR
operaopera_browserMatch8.54
OR
operaopera_browserMatch9.0
OR
operaopera_browserMatch9.0beta1
OR
operaopera_browserMatch9.0beta2
OR
operaopera_browserMatch9.01
OR
operaopera_browserMatch9.02
OR
operaopera_browserMatch9.10
OR
operaopera_browserMatch9.20
OR
operaopera_browserMatch9.20beta1
OR
operaopera_browserMatch9.21
OR
operaopera_browserMatch9.22
OR
operaopera_browserMatch9.23
OR
operaopera_browserMatch9.24
OR
operaopera_browserMatch9.25
OR
operaopera_browserMatch9.26
OR
operaopera_browserMatch9.27
OR
operaopera_browserMatch9.50
OR
operaopera_browserMatch9.50beta1
OR
operaopera_browserMatch9.50beta2
OR
operaopera_browserMatch9.51
OR
operaopera_browserMatch9.52
OR
operaopera_browserMatch9.60
OR
operaopera_browserMatch9.60beta1
OR
operaopera_browserMatch9.61
OR
operaopera_browserMatch9.62
OR
operaopera_browserMatch9.63
OR
operaopera_browserMatch9.64
OR
operaopera_browserMatch10.00
OR
operaopera_browserMatch10.00beta1
OR
operaopera_browserMatch10.00beta2
OR
operaopera_browserMatch10.00beta3
OR
operaopera_browserMatch10.01
OR
operaopera_browserMatch10.10
OR
operaopera_browserMatch10.10beta1
OR
operaopera_browserMatch10.11
OR
operaopera_browserMatch10.50
OR
operaopera_browserMatch10.50beta1
OR
operaopera_browserMatch10.50beta2
OR
operaopera_browserMatch10.51
OR
operaopera_browserMatch10.52
OR
operaopera_browserMatch10.52beta1
OR
operaopera_browserMatch10.52beta2
OR
operaopera_browserMatch10.53
OR
operaopera_browserMatch10.53beta1
OR
operaopera_browserMatch10.54
OR
operaopera_browserMatch10.60
OR
operaopera_browserMatch10.60beta1
OR
operaopera_browserMatch10.61
OR
operaopera_browserMatch10.62
OR
operaopera_browserMatch10.63
OR
operaopera_browserMatch11.00
OR
operaopera_browserMatch11.00beta
OR
operaopera_browserMatch11.01
OR
operaopera_browserMatch11.10
OR
operaopera_browserMatch11.10beta
OR
operaopera_browserMatch11.11
OR
operaopera_browserMatch11.50
OR
operaopera_browserMatch11.50beta
OR
operaopera_browserMatch11.51
OR
operaopera_browserMatch11.52
OR
operaopera_browserMatch11.60
OR
operaopera_browserMatch11.60beta
VendorProductVersionCPE
operaopera_browser7.0cpe:/a:opera:opera_browser:7.0:::
operaopera_browser6.06cpe:/a:opera:opera_browser:6.06:::
operaopera_browser9.50cpe:/a:opera:opera_browser:9.50:::
operaopera_browser9.01cpe:/a:opera:opera_browser:9.01:::
operaopera_browser7.51cpe:/a:opera:opera_browser:7.51:::
operaopera_browser8.0cpe:/a:opera:opera_browser:8.0:beta3::
operaopera_browser7.21cpe:/a:opera:opera_browser:7.21:::
operaopera_browser10.00cpe:/a:opera:opera_browser:10.00:::
operaopera_browser9.24cpe:/a:opera:opera_browser:9.24:::
operaopera_browser7.0cpe:/a:opera:opera_browser:7.0:beta1_v2::
Rows per page:
1-10 of 1261

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7.2

Confidence

High

EPSS

0.009

Percentile

82.4%