Opera before 12.11 allows remote attackers to determine the existence of arbitrary local files via vectors involving web script in an error page.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.opera.com/support/kb/view/1037/ | vendor advisory |
http://www.opera.com/docs/changelogs/unified/1211/ | |
http://www.securityfocus.com/bid/56594 | vdb entry |