CVE-2003-1561

Opera - Sensitive Information Exposure via Referer Header

Title source: llm
STIX 2.1

Description

Opera, probably before 7.50, sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/4004
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/348574

Scores

EPSS 0.0025
EPSS Percentile 48.3%

Details

CWE
CWE-200
Status published
Products (1)
opera/opera
Published Dec 31, 2003
Tracked Since Feb 18, 2026