CVE-2010-2658: Input Validation
Opera before 10.60 does not properly restrict certain interaction between plug-ins, file inputs, and the clipboard, which allows user-assisted remote attackers to trigger the uploading of arbitrary files via a crafted web site.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2658?
CVE-2010-2658 is classified as a medium severity vulnerability due to its potential for file uploads via a crafted web page.
How do I fix CVE-2010-2658?
To fix CVE-2010-2658, users should update Opera to version 10.60 or later, which resolves the issue.
What versions of Opera are affected by CVE-2010-2658?
CVE-2010-2658 affects multiple versions of Opera prior to 10.60, including versions 5.0 through 10.53.
What type of vulnerability is CVE-2010-2658?
CVE-2010-2658 is a security vulnerability that allows for arbitrary file uploads through improper interactions between plug-ins and file inputs.
Is user assistance required to exploit CVE-2010-2658?
Yes, CVE-2010-2658 requires some form of user interaction to trigger the exploit and upload arbitrary files.