Vulnerability Description
Opera 6.0.1 allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webpage.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opera Software | Opera | 6.0.1 |
References
- http://online.securityfocus.com/archive/1/283866
- http://online.securityfocus.com/archive/1/284096
- http://www.securityfocus.com/bid/5290Exploit
- http://online.securityfocus.com/archive/1/283866
- http://online.securityfocus.com/archive/1/284096
- http://www.securityfocus.com/bid/5290Exploit
FAQ
What is CVE-2002-2312?
CVE-2002-2312 is a vulnerability with a CVSS score of 5.8 (MEDIUM). Opera 6.0.1 allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webp...
How severe is CVE-2002-2312?
CVE-2002-2312 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-2312?
Check the references section above for vendor advisories and patch information. Affected products include: Opera Software Opera.