CVE-2010-2661: Medium severity web browser for android vulnerability
Opera before 10.54 on Windows and Mac OS X, and before 10.60 on UNIX platforms, does not properly restrict access to the full pathname of a file selected for upload, which allows remote attackers to obtain potentially sensitive information via unspecified DOM manipulations.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2661?
CVE-2010-2661 is rated as a moderate severity vulnerability due to unauthorized access to potentially sensitive file path information.
How do I fix CVE-2010-2661?
To fix CVE-2010-2661, upgrade to Opera version 10.54 or later on Windows and Mac OS X, and version 10.60 or later on UNIX platforms.
What versions are affected by CVE-2010-2661?
CVE-2010-2661 affects Opera versions prior to 10.54 on Windows and Mac, and prior to 10.60 on UNIX platforms.
What kind of information can be exposed by CVE-2010-2661?
CVE-2010-2661 can expose the full pathname of a file selected for upload, posing a risk of sensitive information leakage.
What should users do if they are using an affected version of Opera?
Users of affected versions should update their Opera browser immediately to mitigate the risks associated with CVE-2010-2661.