Security Advisory

CVE-2004-1157

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2004-12-10 05:00:00
Last updated 2024-08-08 00:39:01
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Opera 7.x up to 7.54, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.