Записи opera
311 опубликованных записей вендора opera.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 3 · 1 %
- Pre-auth RCE
- 57
- С записью об исправлении
- 1,9 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation30
- CWE-264 Permissions, Privileges, and Access Controls28
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')28
- CWE-399 Resource Management Errors26
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor25
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer14
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEОхват bug bounty
Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.
Все записи
311 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
46В плане | CVE-2008-5178Proof of concept | Heap-based buffer overflow in Opera 9.62 on Windows allows remote attackers to execute arbitrary code via a long file:// URI.opera · opera · CWE-119 | Критическая9,3 | — | 31,5 % | 20 нояб. 2008 г. |
46В плане | CVE-2010-1349Proof of concept | Integer overflow in Opera 10.10 through 10.50 allows remote attackers to execute arbitrary code via a large Content-Length value, which trigopera · opera browser · CWE-189 | Критическая10,0 | — | 19,8 % | 12 апр. 2010 г. |
44В плане | CVE-2015-4000Готовый эксплойт | The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_Eopenssl · openssl · CWE-310 | Низкая3,7 | — | 99,9 % | 20 мая 2015 г. |
44В плане | CVE-2011-2628Proof of concept | Opera before 11.11 does not properly implement FRAMESET elements, which allows remote attackers to execute arbitrary code or cause a denial opera · opera browser · CWE-20 | Критическая10,0 | — | 13,4 % | 1 июл. 2011 г. |
43В плане | CVE-2007-5476Эксплойта нет | Unspecified vulnerability in Adobe Flash Player 9.0.47.0 and earlier, when running on Opera before 9.24 on Mac OS X, has unknown "Highly Sevadobe · flash player | Критическая10,0 | — | 9,1 % | 17 окт. 2007 г. |
42В плане | CVE-2013-1489Эксплойта нет | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 10 and Update 11, when running on Windooracle · jdk | Критическая10,0 | — | 7,6 % | 31 янв. 2013 г. |
42В плане | CVE-2011-4684Proof of concept | Opera before 11.60 does not properly handle certificate revocation, which has unspecified impact and remote attack vectors related to "corneopera · opera browser · CWE-310 | Критическая10,0 | — | 5,7 % | 7 дек. 2011 г. |
42В плане | CVE-2012-3561Эксплойта нет | Opera before 11.64 does not properly allocate memory for URL strings, which allows remote attackers to execute arbitrary code or cause a denopera · opera browser · CWE-119 | Критическая10,0 | — | 5,2 % | 14 июн. 2012 г. |
42В плане | CVE-2007-6521Эксплойта нет | Unspecified vulnerability in Opera before 9.25 allows remote attackers to execute arbitrary code via crafted TLS certificates.opera · opera browser · CWE-310 | Критическая10,0 | — | 5,0 % | 24 дек. 2007 г. |
41В плане | CVE-2008-4293Эксплойта нет | Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial opera · opera | Критическая10,0 | — | 4,5 % | 27 сент. 2008 г. |
41В плане | CVE-2008-3079Эксплойта нет | Unspecified vulnerability in Opera before 9.51 on Windows allows attackers to execute arbitrary code via unknown vectors.opera · opera | Критическая10,0 | — | 3,0 % | 8 июл. 2008 г. |
41В плане | CVE-2009-0916Эксплойта нет | Unspecified vulnerability in Opera before 9.64 has unknown impact and attack vectors, related to a "moderately severe issue."opera · opera browser | Критическая10,0 | — | 2,7 % | 16 мар. 2009 г. |
41В плане | CVE-2009-4072Эксплойта нет | Unspecified vulnerability in Opera before 10.10 has unknown impact and attack vectors, related to a "moderately severe issue."opera · opera browser | Критическая10,0 | — | 2,4 % | 24 нояб. 2009 г. |
41В плане | CVE-2010-2421Эксплойта нет | Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "hiopera · opera browser | Критическая10,0 | — | 2,3 % | 22 июн. 2010 г. |
41В плане | CVE-2005-3059Эксплойта нет | Multiple unspecified vulnerabilities in Opera 8.50 on Linux and Windows have unknown impact and attack vectors, related to (1) " handling ofopera · opera browser | Критическая10,0 | — | 2,2 % | 26 сент. 2005 г. |
41В плане | CVE-2012-4145Эксплойта нет | Unspecified vulnerability in Opera before 12.01 on Windows and UNIX, and before 11.66 and 12.x before 12.01 on Mac OS X, has unknown impact opera · opera browser | Критическая10,0 | — | 2,2 % | 6 авг. 2012 г. |
41В плане | CVE-2010-4581Эксплойта нет | Unspecified vulnerability in Opera before 11.00 has unknown impact and attack vectors, related to "a high severity issue."opera · opera browser | Критическая10,0 | — | 2,1 % | 21 дек. 2010 г. |
41В плане | CVE-2011-2610Эксплойта нет | Unspecified vulnerability in Opera before 11.50 has unknown impact and attack vectors, related to a "moderately severe issue."opera · opera browser | Критическая10,0 | — | 2,1 % | 1 июл. 2011 г. |
41В плане | CVE-2010-4586Эксплойта нет | The default configuration of Opera before 11.00 enables WebSockets functionality, which has unspecified impact and remote attack vectors, poopera · opera browser · CWE-16 | Критическая10,0 | — | 2,1 % | 21 дек. 2010 г. |
41В плане | CVE-2011-4683Эксплойта нет | Unspecified vulnerability in Opera before 11.60 has unknown impact and attack vectors, related to a "moderately severe issue."opera · opera browser | Критическая10,0 | — | 2,0 % | 7 дек. 2011 г. |
41В плане | CVE-2008-4292Эксплойта нет | Opera before 9.52 does not check the CRL override upon encountering a certificate that lacks a CRL, which has unknown impact and attack vectopera · opera browser · CWE-255 | Критическая10,0 | — | 1,9 % | 27 сент. 2008 г. |
41В плане | CVE-2013-3211Эксплойта нет | Unspecified vulnerability in Opera before 12.15 has unknown impact and attack vectors, related to a "moderately severe issue."opera · opera browser | Критическая10,0 | — | 1,7 % | 19 апр. 2013 г. |
40В плане | CVE-2007-0126Proof of concept | Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPEG file with an invalid number of index bopera · opera browser · CWE-119 | Критическая9,3 | — | 11,0 % | 8 янв. 2007 г. |
40В плане | CVE-2008-4694Proof of concept | Unspecified vulnerability in Opera before 9.60 allows remote attackers to cause a denial of service (application crash) or execute arbitraryopera · opera browser · CWE-59 | Критическая9,3 | — | 9,8 % | 23 окт. 2008 г. |
40В плане | CVE-2012-3559Эксплойта нет | Unspecified vulnerability in Opera before 12.00 on Mac OS X has unknown impact and attack vectors, related to a "moderate severity issue."opera · opera browser | Критическая10,0 | — | 1,4 % | 14 июн. 2012 г. |
- CVE-2008-517846В плане
Heap-based buffer overflow in Opera 9.62 on Windows allows remote attackers to execute arbitrary code via a long file:// URI.
КритическаяCVSS 9,3Proof of conceptEPSS 32 %opera · opera20 нояб. 2008 г.
- CVE-2010-134946В плане
Integer overflow in Opera 10.10 through 10.50 allows remote attackers to execute arbitrary code via a large Content-Length value, which trig
КритическаяCVSS 10,0Proof of conceptEPSS 20 %opera · opera browser12 апр. 2010 г.
- CVE-2015-400044В плане
The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_E
НизкаяCVSS 3,7Готовый эксплойтEPSS 100 %openssl · openssl20 мая 2015 г.
- CVE-2011-262844В плане
Opera before 11.11 does not properly implement FRAMESET elements, which allows remote attackers to execute arbitrary code or cause a denial
КритическаяCVSS 10,0Proof of conceptEPSS 13 %opera · opera browser1 июл. 2011 г.
- CVE-2007-547643В плане
Unspecified vulnerability in Adobe Flash Player 9.0.47.0 and earlier, when running on Opera before 9.24 on Mac OS X, has unknown "Highly Sev
КритическаяCVSS 10,0Эксплойта нетEPSS 9 %adobe · flash player17 окт. 2007 г.
- CVE-2013-148942В плане
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 10 and Update 11, when running on Windo
КритическаяCVSS 10,0Эксплойта нетEPSS 8 %oracle · jdk31 янв. 2013 г.
- CVE-2011-468442В плане
Opera before 11.60 does not properly handle certificate revocation, which has unspecified impact and remote attack vectors related to "corne
КритическаяCVSS 10,0Proof of conceptEPSS 6 %opera · opera browser7 дек. 2011 г.
- CVE-2012-356142В плане
Opera before 11.64 does not properly allocate memory for URL strings, which allows remote attackers to execute arbitrary code or cause a den
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %opera · opera browser14 июн. 2012 г.
- CVE-2007-652142В плане
Unspecified vulnerability in Opera before 9.25 allows remote attackers to execute arbitrary code via crafted TLS certificates.
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %opera · opera browser24 дек. 2007 г.
- CVE-2008-429341В плане
Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %opera · opera27 сент. 2008 г.
- CVE-2008-307941В плане
Unspecified vulnerability in Opera before 9.51 on Windows allows attackers to execute arbitrary code via unknown vectors.
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %opera · opera8 июл. 2008 г.
- CVE-2009-091641В плане
Unspecified vulnerability in Opera before 9.64 has unknown impact and attack vectors, related to a "moderately severe issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %opera · opera browser16 мар. 2009 г.
- CVE-2009-407241В плане
Unspecified vulnerability in Opera before 10.10 has unknown impact and attack vectors, related to a "moderately severe issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser24 нояб. 2009 г.
- CVE-2010-242141В плане
Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "hi
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser22 июн. 2010 г.
- CVE-2005-305941В плане
Multiple unspecified vulnerabilities in Opera 8.50 on Linux and Windows have unknown impact and attack vectors, related to (1) " handling of
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser26 сент. 2005 г.
- CVE-2012-414541В плане
Unspecified vulnerability in Opera before 12.01 on Windows and UNIX, and before 11.66 and 12.x before 12.01 on Mac OS X, has unknown impact
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser6 авг. 2012 г.
- CVE-2010-458141В плане
Unspecified vulnerability in Opera before 11.00 has unknown impact and attack vectors, related to "a high severity issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser21 дек. 2010 г.
- CVE-2011-261041В плане
Unspecified vulnerability in Opera before 11.50 has unknown impact and attack vectors, related to a "moderately severe issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser1 июл. 2011 г.
- CVE-2010-458641В плане
The default configuration of Opera before 11.00 enables WebSockets functionality, which has unspecified impact and remote attack vectors, po
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser21 дек. 2010 г.
- CVE-2011-468341В плане
Unspecified vulnerability in Opera before 11.60 has unknown impact and attack vectors, related to a "moderately severe issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser7 дек. 2011 г.
- CVE-2008-429241В плане
Opera before 9.52 does not check the CRL override upon encountering a certificate that lacks a CRL, which has unknown impact and attack vect
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser27 сент. 2008 г.
- CVE-2013-321141В плане
Unspecified vulnerability in Opera before 12.15 has unknown impact and attack vectors, related to a "moderately severe issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %opera · opera browser19 апр. 2013 г.
- CVE-2007-012640В плане
Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPEG file with an invalid number of index b
КритическаяCVSS 9,3Proof of conceptEPSS 11 %opera · opera browser8 янв. 2007 г.
- CVE-2008-469440В плане
Unspecified vulnerability in Opera before 9.60 allows remote attackers to cause a denial of service (application crash) or execute arbitrary
КритическаяCVSS 9,3Proof of conceptEPSS 10 %opera · opera browser23 окт. 2008 г.
- CVE-2012-355940В плане
Unspecified vulnerability in Opera before 12.00 on Mac OS X has unknown impact and attack vectors, related to a "moderate severity issue."
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %opera · opera browser14 июн. 2012 г.