Opera before 11.51 allows remote attackers to cause an insecure site to appear secure or trusted via unspecified actions related to Extended Validation and loading content from trusted sources in an unspecified sequence that causes the address field and page information dialog to contain security information based on the trusted site, instead of the insecure site.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1025997 | vdb entry |
http://www.securityfocus.com/bid/49388 | vdb entry |
http://osvdb.org/74828 | vdb entry |
http://www.opera.com/docs/changelogs/windows/1151/ | |
http://secunia.com/advisories/45791 | third party advisory vendor advisory |
http://www.opera.com/docs/changelogs/unix/1151/ | |
http://www.opera.com/docs/changelogs/mac/1151/ | |
http://www.opera.com/support/kb/view/1000/ | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/69515 | vdb entry |