Vulnerability Description
Opera before 12.10 follows Internet shortcuts that are referenced by a (1) IMG element or (2) other inline element, which makes it easier for remote attackers to conduct phishing attacks via a crafted web site, as exploited in the wild in November 2012.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opera | Opera Browser | <= 12.10 |
References
- http://www.opera.com/docs/changelogs/unified/1210/
- http://www.opera.com/support/kb/view/1034/Vendor Advisory
- http://www.securityfocus.com/bid/57132
- http://www.opera.com/docs/changelogs/unified/1210/
- http://www.opera.com/support/kb/view/1034/Vendor Advisory
- http://www.securityfocus.com/bid/57132
FAQ
What is CVE-2012-6467?
CVE-2012-6467 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Opera before 12.10 follows Internet shortcuts that are referenced by a (1) IMG element or (2) other inline element, which makes it easier for remote attackers to conduct phishing attacks via a crafted...
How severe is CVE-2012-6467?
CVE-2012-6467 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-6467?
Check the references section above for vendor advisories and patch information. Affected products include: Opera Opera Browser.