Opera 6.0.1 and 6.0.2 allows a remote web site to upload arbitrary files from the client system, without prompting the client, via an input type=file tag whose value contains a newline.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
opera software opera web browser 6.0.1 |
||
opera software opera web browser 6.0.2 |