CVE-2004-2083: Low severity opera Opera Browser vulnerability
Published Feb 11, 2004
·Updated
Opera Web Browser 7.0 through 7.23 allows remote attackers to trick users into executing a malicious file by embedding a CLSID in the file name, which causes the malicious file to appear as a trusted file type, aka "File Download Extension Spoofing."
Affected Software
1 affected component
opera Opera Browser>=7.0<=7.23
Event History
Feb 11, 2004
CVE Published
05:00 AM
May 19, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2083?
CVE-2004-2083 has a medium severity rating due to the potential for remote exploitation.
2
How do I fix CVE-2004-2083?
To fix CVE-2004-2083, it is recommended to upgrade to a newer version of the Opera Web Browser that is not affected.
3
What versions of Opera are affected by CVE-2004-2083?
CVE-2004-2083 affects Opera Web Browser versions 7.0 through 7.23.
4
What does CVE-2004-2083 exploit?
CVE-2004-2083 exploits a vulnerability in handling file names, leading to potential file download extension spoofing.
5
Who can be impacted by CVE-2004-2083?
Users of Opera Web Browser versions 7.0 to 7.23 may be tricked into executing malicious files.