Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Opera Web Browser Content-Disposition Header Download Dialog File Extension Spoofing Vulnerability

Opera Web Browser is prone to a vulnerability that can allow remote attackers to spoof file extensions through the download dialog.

An attacker may exploit this issue by crafting a malformed HTTP 'Content-Disposition' header that spoofs file extensions to trick vulnerable users into opening and executing a malicious file.

Opera Web Browser versions prior to 8.02 are affected by this issue.







 

Privacy Statement
Copyright 2009, SecurityFocus