8425Third-party advisory
http://securityreason.com/securityalert/8425 CVE-2011-2628
Opera 10/11 - Bad Nesting with Frameset Tag Memory Corruption (Metasploit)
Record summary
CVE-2011-2628 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Opera before 11.11 does not properly implement FRAMESET elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to page unload.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOpera 10/11 - Bad Nesting with Frameset Tag Memory Corruption (Metasploit)ExploitDB exploitby Jose A. VazquezNot analyzed1 file
References
6opera.comConfirmation
http://www.opera.com/docs/changelogs/mac/1111 opera.comConfirmation
http://www.opera.com/docs/changelogs/unix/1111 opera.comConfirmation
http://www.opera.com/docs/changelogs/windows/1111 opera.comConfirmation
http://www.opera.com/support/kb/view/992 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-2628