CVE-2002-2358

Cross-site scripting (XSS) vulnerability in the FTP view feature in Opera 6.0 and 6.01 through 6.04 allows remote attackers to inject arbitrary web script or HTML via the title tag of an FTP URL.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:opera_software:opera_web_browser:6.0:*:*:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0:*:win32:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.1:*:linux:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.1:*:win32:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.2:*:win32:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.3:*:win32:*:*:*:*:*
cpe:2.3:a:opera_software:opera_web_browser:6.0.4:*:win32:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0061.html - Exploit () http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0061.html - Exploit
References () http://online.securityfocus.com/archive/1/286151 - () http://online.securityfocus.com/archive/1/286151 -
References () http://www.iss.net/security_center/static/9757.php - () http://www.iss.net/security_center/static/9757.php -
References () http://www.opera.com/windows/changelogs/605/?session=b2a9ea38c710788c23970ba2c9a34d47 - () http://www.opera.com/windows/changelogs/605/?session=b2a9ea38c710788c23970ba2c9a34d47 -
References () http://www.securityfocus.com/bid/5401 - Exploit, Patch () http://www.securityfocus.com/bid/5401 - Exploit, Patch

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2002-2358

Mitre link : CVE-2002-2358

CVE.ORG link : CVE-2002-2358


JSON object : View

Products Affected

opera_software

  • opera_web_browser
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')