Opera Browser 7.23, and other versions before 7.50, updates the address bar as soon as the user clicks a link, which allows remote attackers to redirect to other sites via the onUnload attribute.
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/16131 | third party advisory vdb entry |
http://www.securityfocus.com/bid/10337 | patch vdb entry broken link third party advisory |
http://www.osvdb.org/6108 | patch broken link vdb entry |
http://secunia.com/secunia_research/2004-2/advisory/ | vendor advisory broken link |
http://secunia.com/advisories/11532 | patch vendor advisory broken link third party advisory |