Jul 28, 2006 : Opera Software Vulnerability Found


📅 - A vulnerability has been discovered in Opera Software, which can be exploited to display the SSL certificate from a trusted site on an non-trusted site. The weakness was discovered by Secunia Research (secunia.com).


The weakness can be attributed to Opera's failure to reset the SSL security bar after displaying a download dialog from a SSL enabled Web site. This allows an non-trusted Web site to display yellow SSL security bar from a trusted Web site.

A more convincing exploit can be employed using pop-up windows, which do not have a visible address bar.

The weakness has been confirmed in Opera 8.54, with the possibility of prior versions also being affected. To avoid this, users are asked to upgrade to version 9.0.

Secunia rated the threat low.

Reads: 2074 | Category: General | Source: TheWHIR : Web Host Industry Reviews
URL source: http://www.thewhir.com/marketwatch/062806_Opera_Software_Vulnerability_Found.cfm
Want to add a website news or press release ? Just do it, it's free! Use add web hosting news!