Opera Mail Client Attachment Spoofing and Script Insertion



Secunia Research has discovered two vulnerabilities in the Opera Mail client, which can be exploited by a malicious person to conduct script insertion attacks and to spoof the name of attached files.
The Secunia advisory has recently been updated and according to information from the vendor this issue can be solved by updating to
Opera version 8.50.
The vulnerabilities have been confirmed in Opera version 8.02, and prior versions may also be vulnerable.

