Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/3553 | vdb entry |
http://www.iss.net/security_center/static/7567.php | vdb entry |
http://marc.info/?l=bugtraq&m=100588139312696&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=100586079932284&w=2 | mailing list |