VulnerabilityModified
CVE-2008-2716
Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of trusted frames on the same parent page by modifying the location, which can facilitate phishing attacks.
MEDIUM 5.0EPSS 2.98%
Does this matter?
Lower severity and a low EPSS score (2.98%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of trusted frames on the same parent page by modifying the location, which can facilitate phishing attacks.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 2.98% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-1021
- Affected
- opera/opera browser
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00005.htmlThird Party Advisory
- http://secunia.com/advisories/30636Broken Link
- http://secunia.com/advisories/30682Broken Link
- http://www.opera.com/docs/changelogs/linux/950/#securityBroken Link, Vendor Advisory
- http://www.opera.com/docs/changelogs/windows/950/#securityBroken Link, Vendor Advisory
- http://www.opera.com/support/search/view/885/Broken Link, Vendor Advisory
- http://www.securityfocus.com/bid/29684Broken Link, Patch, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1020292Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2008/1812Broken Link
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43033Third Party Advisory, VDB Entry
- http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00005.htmlThird Party Advisory
- http://secunia.com/advisories/30636Broken Link
- http://secunia.com/advisories/30682Broken Link
- http://www.opera.com/docs/changelogs/linux/950/#securityBroken Link, Vendor Advisory
- http://www.opera.com/docs/changelogs/windows/950/#securityBroken Link, Vendor Advisory
- http://www.opera.com/support/search/view/885/Broken Link, Vendor Advisory
- http://www.securityfocus.com/bid/29684Broken Link, Patch, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1020292Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2008/1812Broken Link
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43033Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.