Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2011-0684 | First vendor Publication | 2011-01-31 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Opera before 11.01 does not properly handle redirections and unspecified other HTTP responses, which allows remote web servers to obtain sufficient access to local files to use these files as page resources, and consequently obtain potentially sensitive information from the contents of the files, via an unknown response manipulation. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0684 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-20 | Improper Input Validation |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:12296 | |||
Oval ID: | oval:org.mitre.oval:def:12296 | ||
Title: | Information disclosure vulnerability in Opera before 11.01 | ||
Description: | Opera before 11.01 does not properly handle redirections and unspecified other HTTP responses, which allows remote web servers to obtain sufficient access to local files to use these files as page resources, and consequently obtain potentially sensitive information from the contents of the files, via an unknown response manipulation. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0684 | Version: | 8 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Opera Browser |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2012-08-10 | Name : Gentoo Security Advisory GLSA 201206-03 (Opera) File : nvt/glsa_201206_03.nasl |
2011-03-05 | Name : FreeBSD Ports: opera, opera-devel, linux-opera File : nvt/freebsd_opera23.nasl |
2011-02-07 | Name : Opera Browser Multiple Vulnerabilities Feb-11 (Windows) File : nvt/gb_opera_mult_vuln_win_feb11.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
70730 | Opera HTTP Redirection Unspecified Response Manipulation Local File Remote Ac... Opera contains a flaw related to the handling of redirections and other unspecified HTTP responses. This may allow a remote attacker to obtain access to local files by loading them as web resources via an unspecified response manipulation. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_opera-110204.nasl - Type : ACT_GATHER_INFO |
2012-06-21 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201206-03.nasl - Type : ACT_GATHER_INFO |
2011-05-05 | Name : The remote openSUSE host is missing a security update. File : suse_11_2_opera-110204.nasl - Type : ACT_GATHER_INFO |
2011-02-10 | Name : The remote FreeBSD host is missing one or more security-related updates. File : freebsd_pkg_2eda0c5434ab11e0810300215c6a37bb.nasl - Type : ACT_GATHER_INFO |
2011-01-27 | Name : The remote host contains a web browser that is affected by multiple vulnerabi... File : opera_1101.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:06:15 |
|
2024-11-28 12:24:48 |
|
2022-03-02 01:10:01 |
|
2022-02-26 12:09:40 |
|
2021-05-04 12:13:59 |
|
2021-04-22 01:15:09 |
|
2020-05-23 01:43:51 |
|
2020-05-23 00:27:47 |
|
2017-09-19 09:24:13 |
|
2016-06-28 18:33:00 |
|
2016-04-26 20:32:40 |
|
2014-06-14 13:30:18 |
|
2014-02-17 11:00:26 |
|
2013-05-10 22:54:29 |
|