MEDIUM · 5.8

CVE-2008-4698

Opera before 9.61 does not properly block scripts during preview of a news feed, which allows remote attackers to create arbitrary new feed subscriptions and read the contents of arbitrary feeds.

Vulnerability Description

Opera before 9.61 does not properly block scripts during preview of a news feed, which allows remote attackers to create arbitrary new feed subscriptions and read the contents of arbitrary feeds.

CVSS Score

5.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:N
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
OperaOpera Browser<= 9.60

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-4698?

CVE-2008-4698 is a vulnerability with a CVSS score of 5.8 (MEDIUM). Opera before 9.61 does not properly block scripts during preview of a news feed, which allows remote attackers to create arbitrary new feed subscriptions and read the contents of arbitrary feeds.

How severe is CVE-2008-4698?

CVE-2008-4698 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-4698?

Check the references section above for vendor advisories and patch information. Affected products include: Opera Opera Browser.