Back to Database
Status published
Critical
CVE-2008-4794
Opera before 9.62 allows remote attackers to execute arbitrary commands...
Vulnerability Description
Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different vulnerability than CVE-2008-4696.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-4794
Credits & Attribution
No credits recorded in the NVD database.
References
- http://secunia.com/advisories/32538
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46219
- http://www.securitytracker.com/id?1021128
- http://lists.opensuse.org/opensuse-security-announce/2008-10/msg00012.html
- http://www.opera.com/support/search/view/906/
- http://www.securityfocus.com/bid/31991
- http://security.gentoo.org/glsa/glsa-200811-01.xml
More from opera
View All →CVE-2019-18624
Opera Mini for Android allows attackers to bypass intended restrictions...
Critical
9.8
CVE-2019-13607
The Opera Mini application through 16.0.14 for iOS has a...
Medium
6.1
CVE-2019-12278
Opera through 53 on Android allows Address Bar Spoofing. Characters...
Medium
4.3
CVE-2018-6608
In the WebRTC component in Opera 51.0.2830.55, after visiting a...
Medium
4.3
CVE-2018-18913
Opera before 57.0.3098.106 is vulnerable to a DLL Search Order...
High
7.8
Affected Vendor
opera
View all reports →Affected Software
opera
Vulnerable Versions:
0, 5..10, 5.0, 5.1, 5.2, 5.3, 5.4, 5.5, 5.6, 5.7, 5.8, 5.9, 5.11, 5.12, 6, 6.0, 6.01, 6.02, 6.03, 6.04, 6.05, 6.06, 7, 7.0, 7.01, 7.02, 7.03, 7.10, 7.11, 7.20, 7.21, 7.22, 7.23, 7.50, 7.51, 7.52, 7.53, 7.54, 8.0, 8.01, 8.02, 8.50, 8.51, 8.52, 8.53, 8.54, 9.0, 9.01, 9.02, 9.10, 9.20, 9.21, 9.22, 9.23, 9.24, 9.25, 9.26, 9.27, 9.50, 9.51
Timeline
Official Publish:
October 30th, 2008
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.