← Vulnerability feed

Vulnerability record · CVE-2002-0783 · published 12 August 2002

CVE-2002-0783: Opera software opera web browser vulnerability

Opera Software · Opera Web Browser

Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL.

7.5 CVSS 2.0 High EPSS 2.8% · top 14.0%
7.5CVSS 2.0 base score
2.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 4 tagged exploit
16 Jun 2026Last modified by NVD

Description

Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0783 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2005-0233Mozilla camino vulnerabilityThe International Domain Name (IDN) support in Firefox 1.0, Camino .8.5, and Mozilla before 1.7.6 allows remote attackers to spoof domain names using…EPSS 20%7.5CVE-2002-1091Mozilla vulnerabilityNetscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with a zero w…EPSS 4.3%7.5CVE-2002-0243Opera software opera web browser vulnerabilityCross-site scripting vulnerability in Opera 6.0 and earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose outp…EPSS 1.4%6.4CVE-2002-2311Microsoft internet explorer permissions and access controls vulnerabilityMicrosoft Internet Explorer 6.0 and possibly others allows remote attackers to upload arbitrary file contents when users press a key corresponding to…EPSS 9.5%5.0CVE-2002-2332Opera software opera web browser memory buffer overflow vulnerabilityBuffer overflow in Opera 6.01 allows remote attackers to cause a denial of service (crash) via an IMG tag with large width and height attributes.EPSS 1.8%5.0CVE-2002-0898Opera software opera web browser vulnerabilityOpera 6.0.1 and 6.0.2 allows a remote web site to upload arbitrary files from the client system, without prompting the client, via an input type=file…EPSS 6.0%5.0CVE-2001-1491Opera software opera web browser vulnerabilityOpera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.EPSS 7.0%5.0CVE-2001-0898Opera software opera web browser vulnerabilityOpera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses se…EPSS 3.1%

Source: NIST National Vulnerability Database (record CVE-2002-0783), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.