Oval Definition:oval:org.mitre.oval:def:12071
Revision Date:2013-12-23Version:8
Title:Cross-site scripting (XSS) and URL spoofing vulnerability in Opera version less than 10.63.3516.0
Description:Opera before 10.63 does not properly restrict web script in unspecified circumstances involving reloads and redirects, which allows remote attackers to spoof the Address Bar, conduct cross-site scripting (XSS) attacks, and possibly execute arbitrary code by leveraging the ability of a script to interact with a web page from (1) a different domain or (2) a different security context.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-4045
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Opera Browser
Definition Synopsis
  • Opera Browser is installed
  • AND Check if HKLM\SOFTWARE\Classes\Applications\Opera.exe\shell\open\command exists
  • AND Check if Opera version is less than 10.63.3516.0
  • BACK