Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Opera before 10.01 does not properly restrict HTML in a (1) RSS or (2) Atom feed, which allows remote attackers to conduct cross-site scripting (XSS) attacks, and conduct cross-zone scripting attacks involving the Feed Subscription Page to read feeds or create feed subscriptions, via a crafted feed, related to the rendering of the application/rss+xml content type as "scripted content."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Opera跨站脚本攻击漏洞
Vulnerability Description
Opera 10.01之前版本不能正确限制RSS或Atom feed中的HTML。远程攻击者可借助相关应用程序的rss+xml内容类型的脚本,执行跨站脚本攻击,并进行跨域脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A