CVE-2005-2406

Opera Browser - XSS

Title source: rule

Description

Opera 8.01 allows remote attackers to conduct cross-site scripting (XSS) attacks or modify which files are uploaded by tricking a user into dragging an image that is a "javascript:" URI.

Scores

EPSS 0.0049
EPSS Percentile 65.0%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

opera/opera_browser

Timeline

Published Aug 01, 2005
Tracked Since Feb 18, 2026