Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opera_web_browser | Opera_software | 5.12 (including) | 5.12 (including) |
Opera_web_browser | Opera_software | 6.0 (including) | 6.0 (including) |
Opera_web_browser | Opera_software | 6.0.1 (including) | 6.0.1 (including) |