CVE-2011-2628
Opera before 11.11 does not properly implement FRAMESET elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to page unload.
- Affected products
- Opera
- Opera Opera Browser
- ≤ 11.10, 5.0, 5.02, 5.10, 5.11, 5.12, 6.0, 6.1, 6.01, 6.02, 6.03, 6.04, 6.05, 6.06, 6.11, 6.12, 7.0, 7.01, 7.02, 7.03, 7.10, 7.11, 7.20, 7.21, 7.22, 7.23, 7.50, 7.51, 7.52, 7.53, 7.54, 7.60, 8.0, 8.01, 8.02, 8.50, 8.51, 8.52, 8.53, 8.54
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 13.4% (96th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2011-07-01
CVE-2011-2628 at NVD
5 known exploits for CVE-2011-2628
Proof-of-concept code and exploit modules indexed by Sploitus
Opera 10/11 (bad nesting with frameset tag) Memory Corruption
Opera 1011 - Bad Nesting with Frameset Tag Memory Corruption (Metasploit)
Opera 10/11 - Bad Nesting with Frameset Tag Memory Corruption (Metasploit)
Opera 10/11 Memory Corruption
Opera 10/11 (bad nesting with frameset tag) Memory Corruption