Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Opera before 12.13 does not send CORS preflight requests in all required cases, which allows remote attackers to bypass a CSRF protection mechanism via a crafted web site that triggers a CORS request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Opera 跨站请求伪造漏洞
Vulnerability Description
Opera是挪威欧朋(Opera Software)公司所开发的一款Web浏览器,它支持多窗口浏览、可定制用户界面等。 Opera 12.13之前版本中存在漏洞,该漏洞源于程序未在所有必需的实例中发送CORS预检请求。通过可触发CORS请求的特制网站,远程攻击者可利用该漏洞绕过CSRF保护机制。
CVSS Information
N/A
Vulnerability Type
N/A