CVE-2005-2405
Published Aug 1, 2005
Last updated 3 years ago
Overview
- Description
- Opera 8.01, when the "Arial Unicode MS" font (ARIALUNI.TTF) is installed, does not properly handle extended ASCII characters in the file download dialog box, which allows remote attackers to spoof file extensions and possibly trick users into executing arbitrary code.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:opera:opera_browser:8.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9DF2B21F-7E97-416B-AF5C-35338A254552" } ], "operator": "OR" } ] } ]