CVE-2010-4579

Opera < 11.00 - Dialog Spoofing via Unconstrained Dialog Positioning

Title source: llm
STIX 2.1

Description

Opera before 11.00 does not properly constrain dialogs to appear on top of rendered documents, which makes it easier for remote attackers to trick users into interacting with a crafted web site that spoofs the (1) security information dialog or (2) download dialog.

References (6)

Core 6
Core References
Vendor Advisory x_refsource_confirm
http://www.opera.com/support/kb/view/977/
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/42653
Vendor Advisory x_refsource_confirm
http://www.opera.com/docs/changelogs/unix/1100/
Vendor Advisory x_refsource_confirm
http://www.opera.com/docs/changelogs/windows/1100/
Vendor Advisory x_refsource_confirm
http://www.opera.com/docs/changelogs/mac/1100/

Scores

EPSS 0.0070
EPSS Percentile 72.3%

Details

Status published
Products (30)
opera/opera_browser 5.0 (8 CPE variants)
opera/opera_browser 5.02
opera/opera_browser 5.10
opera/opera_browser 5.11
opera/opera_browser 5.12
opera/opera_browser 6.0 (6 CPE variants)
opera/opera_browser 6.1 (2 CPE variants)
opera/opera_browser 6.01
opera/opera_browser 6.02
opera/opera_browser 6.03
... and 20 more
Published Dec 22, 2010
Tracked Since Feb 18, 2026