5.8
CVSSv2

CVE-2002-2312

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 585
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Opera 6.0.1 allows remote malicious users to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webpage.

Vulnerable Product Search on Vulmon Subscribe to Product

opera software opera 6.0.1

Exploits

source: wwwsecurityfocuscom/bid/5290/info An issue has been reported with the JavaScript implementation of multiple web browsers, including Microsoft Internet Explorer and Opera Malicious JavaScript may subvert some keypress events, with consequences including the disclosure of arbitrary local files to a remote server Through JavaScrip ...