2.1
CVSSv2

CVE-2019-19788

Published: 18/12/2019 Updated: 07/01/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Opera for Android prior to 54.0.2669.49432 is vulnerable to a sandboxed cross-origin iframe bypass attack. By using a service working inside a sandboxed iframe it is possible to bypass the normal sandboxing attributes. This allows an malicious user to make forced redirections without any user interaction from a third-party context.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opera opera