Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026
CVE-2004-2659
CVE-2004-2659
Description
Opera offers an Open button to verify that a user wishes to execute a downloaded file, which allows user-assisted remote attackers to construct a race condition that tricks a user into clicking Open via a request for a different mouse or keyboard action very shortly before the Open dialog appears. NOTE: this is a different issue than CVE-2005-2407.
Affected products
2- cpe:2.3:a:mozilla:mozilla:-:*:*:*:*:*:*:*
- cpe:2.3:a:opera:opera_browser:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- archives.neohapsis.com/archives/fulldisclosure/2004-07/0264.htmlnvdBroken LinkExploit
- www.squarefree.com/2004/07/01/race-conditions-in-security-dialogs/nvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.