Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-6524

EPSS 1.30% · P80
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-6524

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Opera before 9.25 allows remote attackers to obtain potentially sensitive memory contents via a crafted bitmap (BMP) file, as demonstrated using a CANVAS element and JavaScript in an HTML document for copying these contents from 9.50 beta, a related issue to CVE-2008-0420.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Opera Web 9.25版本修复多个漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Opera是挪威欧朋(Opera Software)公司所开发的一款Web浏览器,它支持多窗口浏览、可定制用户界面等。 Opera Web浏览器的9.25之前版本中存在多个安全漏洞,可能允许恶意用户执行跨站脚本攻击、泄露敏感信息、导致拒绝服务或执行任意代码。 1) 某些插件可能导致跨站脚本攻击。 2) 在连接到TLS保护的站点时,Opera会解析包含有主题替换名称的X.509证书。如果证书带有特制的主题替换名称的话,就会在Opera中触发堆溢出,导致拒绝服务或执行任意代码。 3) Opera中的富文本编辑
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-6524

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-6524

Please Login to view more intelligence information

Same Patch Batch · n/a · 2007-12-24 · 9 CVEs total

CVE-2007-6419HP-UX rpc.yppasswd 未明远程拒绝服务漏洞
CVE-2007-6517Aeries Browser Interface 'LostPwd.asp' SQL注入漏洞
CVE-2007-6518Woltlab Burning Board Lite Search.PHP 多个SQL注入漏洞
CVE-2007-6519HP Tru64 FFM 未明本地拒绝服务漏洞
CVE-2007-6520Opera Web 'plug-ins'跨域脚本攻击漏洞
CVE-2007-6521Opera Web TLS连接堆缓冲区溢出漏洞
CVE-2007-6522Opera Web浏览器文本编辑功能跨站脚本攻击漏洞
CVE-2007-6523Opera Web RLE远程拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2007-6524

No comments yet


Leave a comment