CVE-2010-2576

Description

Opera before 10.61 does not properly suppress clicks on download dialogs that became visible after a recent tab change, which allows remote attackers to conduct clickjacking attacks, and consequently execute arbitrary code, via vectors involving (1) closing a tab or (2) hiding a tab, a related issue to CVE-2005-2407.

Risk Information

Base Score
7.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N
EPSS Score
Exploitation Probability
1.869

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Opera 10.60Windows
Multiple vulnerabilities affected in Opera 10.60 (For Ubuntu)Linux
Multiple vulnerabilities affected in Opera 10.60 (For Debian)Linux
Multiple vulnerabilities affected in Opera 10.60 (For Centos)Linux
Multiple vulnerabilities affected in Opera 10.60 (For RedHat)Linux
Multiple vulnerabilities affected in Opera 10.60 (For Suse)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234