CVE-2010-1728
Opera before 10.53 on Windows and Mac OS X does not properly handle a series of document modifications that occur asynchronously, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via JavaScript that writes <marquee> sequences in an infinite loop, leading to attempted use of uninitialized memory. NOTE: this might overlap CVE-2006-6955.
- Affected products
- Opera
- Opera Opera Browser
- ≤ 10.52, 5.0, 5.02, 5.10, 5.11, 5.12, 6.0, 6.1, 6.01, 6.02, 6.03, 6.04, 6.05, 6.06, 6.11, 6.12, 7.0, 7.01, 7.02, 7.03, 7.10, 7.11, 7.20, 7.21, 7.22, 7.50, 7.52, 7.53, 7.54, 7.60, 8.0, 8.01, 8.50, 8.51, 8.52, 8.54, 9.0, 9.01, 9.02, 9.10
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 7.0% (93th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2010-05-05
CVE-2010-1728 at NVD
No indexed exploits for CVE-2010-1728 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2010-1728 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.