CVE
- Id
- 3704
- CVE No.
- CVE-2001-0898
- Status
- Candidate
- Description
- Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.
- Phase
- Modified (20050703)
- Votes
- MODIFY(1) Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall
- Comments
- Frech> XF:opera-java-cross-site(7567) | Christey> XF:opera-java-cross-site(7567) | URL:http://www.iss.net/security_center/static/7567.php | BID:3553 | URL:http://www.securityfocus.com/bid/3553 | | Some people are calling this XSS, but is it?