Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4795. PoCs published by Stefano Di Paola.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Opera Web Browser versions prior to 9.62. It leverages improper input sanitization in the 'History Search' feature to execute arbitrary JavaScript code in the context of the affected site.
Description
The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which allows remote attackers to inject arbitrary web script or HTML via cross-site scripting (XSS) attacks.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Opera Web Browser versions prior to 9.62. It leverages improper input sanitization in the 'History Search' feature to execute arbitrary JavaScript code in the context of the affected site.