Vulnerability Name: | CVE-2005-3946 (CCN-24099) | ||||||||
Assigned: | 2005-09-20 | ||||||||
Published: | 2005-09-20 | ||||||||
Updated: | 2022-02-28 | ||||||||
Summary: | Opera 8.50 allows remote attackers to cause a denial of service (crash) via a Java applet with a large string argument to the removeMember JNI method for the com.opera.JSObject class. | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
3.8 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-20 | ||||||||
Vulnerability Consequences: | Other | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-3007 Source: MITRE Type: CNA CVE-2005-3041 Source: MITRE Type: CNA CVE-2005-3059 Source: MITRE Type: CNA CVE-2005-3946 Source: CCN Type: SA16645 Opera Mail Client Attachment Spoofing and Script Insertion Source: MISC Type: Broken Link, Exploit http://www.illegalaccess.org/exploit/opera85/OperaApplet.html Source: CCN Type: Opera Website Opera 8.50 for Windows Changelog Source: CCN Type: OSVDB ID: 19509 Opera Mail Client Crafted Content-Type File Extension Spoofing Source: CCN Type: OSVDB ID: 19739 Opera HTTPS must-revalidate Cache Directive Unspecified Issue Source: CCN Type: OSVDB ID: 19740 Opera Cookie Comment Encoding Unspecified Issue Source: CCN Type: OSVDB ID: 20003 Opera Drag and Drop Unspecified File Upload Source: CCN Type: OSVDB ID: 21494 Opera JNI com.opera.JSObject Class Crafted Applet DoS Source: BUGTRAQ Type: Broken Link, Exploit, Third Party Advisory, VDB Entry, Vendor Advisory 20051129 Opera 8.50 DoS with simple java applet Source: BUGTRAQ Type: Broken Link, Third Party Advisory, VDB Entry 20051201 Re: Opera 8.50 DoS with simple java applet Source: CCN Type: BID-14880 Opera Web Browser Mail Client Multiple Vulnerabilities Source: CCN Type: BID-14884 Opera Web Browser Unspecified Drag And Drop File Upload Vulnerability Source: CCN Type: BID-15647 RETIRED: Apple Mac OS X Security Update 2005-009 Multiple Vulnerabilities Source: BID Type: Broken Link, Exploit, Third Party Advisory, VDB Entry 15648 Source: XF Type: UNKNOWN opera-mustrevalidate-cookie(24099) Source: SUSE Type: SUSE-SA:2005:057 opera: remote code execution | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |