Vulnerability Name: | CVE-2004-1489 (CCN-18178) | ||||||||
Assigned: | 2004-11-19 | ||||||||
Published: | 2004-11-19 | ||||||||
Updated: | 2022-02-28 | ||||||||
Summary: | Opera 7.54 and earlier does not properly limit an applet's access to internal Java packages from Sun, which allows remote attackers to gain sensitive information, such as user names and the installation directory. | ||||||||
CVSS v3 Severity: | 3.7 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 2.6 Low (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-668 | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri Nov 19 2004 - 11:04:35 CST Java Vulnerabilities in Opera 7.54 Source: MITRE Type: CNA CVE-2004-1489 Source: FULLDISC Type: Exploit 20041119 Java Vulnerabilities in Opera 7.54 Source: CCN Type: GLSA-200502-17 Opera: Multiple vulnerabilities Source: GENTOO Type: Patch, Third Party Advisory GLSA-200502-17 Source: CCN Type: Opera Web site Opera Software - The Best Internet Experience Source: CONFIRM Type: Broken Link http://www.opera.com/linux/changelogs/754u1/ Source: CCN Type: OSVDB ID: 12007 Opera sun.security.krb5.Credentials Java Class User Name Disclosure Source: CCN Type: BID-11712 Opera Web Browser Java Implementation Multiple Remote Vulnerabilities Source: XF Type: UNKNOWN opera-home-directory-information-disclosure(18178) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |