CVE-2002-0898 Information

Description

Opera 6.0.1 and 6.0.2 allows a remote web site to upload arbitrary files from the client system without prompting the client via an input type=file tag whose value contains a newline.

Reference

http://marc.info/?l=ntbugtraq&m=102256058220402&w=2 http://online.securityfocus.com/archive/1/274202 http://www.iss.net/security_center/static/9188.php http://www.opera.com/windows/changelog/log603.html http://www.securityfocus.com/bid/4834

Share on: