Vulnerability Name:

CVE-2008-4293 (CCN-44547)

Assigned:2008-08-20
Published:2008-08-20
Updated:2017-08-08
Summary:Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors in which Opera is launched by other applications.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2008-4293

Source: CCN
Type: SA31549
Opera Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
31549

Source: CCN
Type: Opera Web site
Opera 9.52 for Windows Changelog

Source: CONFIRM
Type: UNKNOWN
http://www.opera.com/docs/changelogs/windows/952/

Source: CCN
Type: Opera Download Web site
Download Opera Web Browser

Source: CCN
Type: Opera Software Knowledge Base Article 892
Advisory: Startup crash can allow execution of arbitrary code

Source: CONFIRM
Type: UNKNOWN
http://www.opera.com/support/search/view/892/

Source: CCN
Type: OSVDB ID: 47693
Opera Startup Crash Unspecified Arbitrary Code Execution

Source: BID
Type: UNKNOWN
30768

Source: CCN
Type: BID-30768
Opera Web Browser 9.51 Multiple Security Vulnerabilities

Source: VUPEN
Type: UNKNOWN
ADV-2008-2416

Source: XF
Type: UNKNOWN
opera-protocolhandler-code-execution(44547)

Source: XF
Type: UNKNOWN
opera-protocolhandler-code-execution(44547)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:opera:opera:5..10:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.1:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.2:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.3:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.4:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.5:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.6:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.7:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.8:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.9:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.11:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:5.12:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.01:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.02:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.03:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.04:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.05:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:6.06:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7:beta_1.2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.0:beta_2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.01:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.02:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.03:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.10:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.11:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.20:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.20:beta7:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.21:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.22:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.23:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.50:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.50:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.51:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.52:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.53:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.54:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.54:update_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:7.54:update_2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.0:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.0:beta_2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.0:beta_3:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.01:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.02:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.50:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.51:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.52:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.53:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:8.54:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.0:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.0:beta_2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.01:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.02:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.10:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.20:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.20:beta_1:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.21:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.22:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.23:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.24:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.25:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.26:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.27:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.50:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:9.50:beta_2:*:*:*:*:*:*
  • OR cpe:/a:opera:opera:*:*:*:*:*:*:*:* (Version <= 9.51)
  • AND
  • cpe:/o:microsoft:windows:*:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:opera:opera_browser:9.24:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.23:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.25:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.26:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.27:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.50:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.10:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.21:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.0:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.22:*:*:*:*:*:*:*
  • OR cpe:/a:opera:opera_browser:9.51:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    opera opera 5..10
    opera opera 5.0
    opera opera 5.1
    opera opera 5.2
    opera opera 5.3
    opera opera 5.4
    opera opera 5.5
    opera opera 5.6
    opera opera 5.7
    opera opera 5.8
    opera opera 5.9
    opera opera 5.11
    opera opera 5.12
    opera opera 6 beta_1
    opera opera 6.0
    opera opera 6.01
    opera opera 6.02
    opera opera 6.03
    opera opera 6.04
    opera opera 6.05
    opera opera 6.06
    opera opera 7 beta_1
    opera opera 7 beta_1.2
    opera opera 7.0
    opera opera 7.0 beta_2
    opera opera 7.01
    opera opera 7.02
    opera opera 7.03
    opera opera 7.10
    opera opera 7.11
    opera opera 7.20
    opera opera 7.20 beta7
    opera opera 7.21
    opera opera 7.22
    opera opera 7.23
    opera opera 7.50
    opera opera 7.50 beta_1
    opera opera 7.51
    opera opera 7.52
    opera opera 7.53
    opera opera 7.54
    opera opera 7.54 update_1
    opera opera 7.54 update_2
    opera opera 8.0
    opera opera 8.0 beta_1
    opera opera 8.0 beta_2
    opera opera 8.0 beta_3
    opera opera 8.01
    opera opera 8.02
    opera opera 8.50
    opera opera 8.51
    opera opera 8.52
    opera opera 8.53
    opera opera 8.54
    opera opera 9.0
    opera opera 9.0 beta_1
    opera opera 9.0 beta_2
    opera opera 9.01
    opera opera 9.02
    opera opera 9.10
    opera opera 9.20
    opera opera 9.20 beta_1
    opera opera 9.21
    opera opera 9.22
    opera opera 9.23
    opera opera 9.24
    opera opera 9.25
    opera opera 9.26
    opera opera 9.27
    opera opera 9.50
    opera opera 9.50 beta_2
    opera opera *
    microsoft windows *
    opera opera browser 9.24
    opera opera browser 9.23
    opera opera browser 9.25
    opera opera browser 9.26
    opera opera browser 9.27
    opera opera browser 9.50
    opera opera browser 9.10
    opera opera browser 9.21
    opera opera browser 9.0
    opera opera browser 9.22
    opera opera browser 9.51