VulnerabilityModified
CVE-2003-1387
Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code via a URL with a long username.
HIGH 7.5EPSS 14.7%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 14.7%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code via a URL with a long username.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 14.67% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-120
- Affected
- opera/opera browser
- Source
- cve@mitre.org
References
- http://securityreason.com/securityalert/3253Broken Link
- http://www.securityfocus.com/archive/1/311194Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/315794Broken Link, Exploit, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/6811Broken Link, Patch, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11281Third Party Advisory, VDB Entry
- http://securityreason.com/securityalert/3253Broken Link
- http://www.securityfocus.com/archive/1/311194Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/315794Broken Link, Exploit, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/6811Broken Link, Patch, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11281Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.