CVE-2011-3388
Opera before 11.51 allows remote attackers to cause an insecure site to appear secure or trusted via unspecified actions related to Extended Validation and loading content from trusted sources in an unspecified sequence that causes the address field and…
Does this matter?
Lower severity and a low EPSS score (2.27%). Track it; it rarely justifies an emergency change on its own.
Description
Opera before 11.51 allows remote attackers to cause an insecure site to appear secure or trusted via unspecified actions related to Extended Validation and loading content from trusted sources in an unspecified sequence that causes the address field and page information dialog to contain security information based on the trusted site, instead of the insecure site.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 2.27% probability · 82th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- opera/opera browser
- Source
- cve@mitre.org
References
- http://osvdb.org/74828
- http://secunia.com/advisories/45791Vendor Advisory
- http://www.opera.com/docs/changelogs/mac/1151/
- http://www.opera.com/docs/changelogs/unix/1151/
- http://www.opera.com/docs/changelogs/windows/1151/
- http://www.opera.com/support/kb/view/1000/Vendor Advisory
- http://www.securityfocus.com/bid/49388
- http://www.securitytracker.com/id?1025997
- https://exchange.xforce.ibmcloud.com/vulnerabilities/69515
- http://osvdb.org/74828
- http://secunia.com/advisories/45791Vendor Advisory
- http://www.opera.com/docs/changelogs/mac/1151/
- http://www.opera.com/docs/changelogs/unix/1151/
- http://www.opera.com/docs/changelogs/windows/1151/
- http://www.opera.com/support/kb/view/1000/Vendor Advisory
- http://www.securityfocus.com/bid/49388
- http://www.securitytracker.com/id?1025997
- https://exchange.xforce.ibmcloud.com/vulnerabilities/69515
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.