Files
CVEs-PoC/2019/CVE-2019-12278.md
2025-09-29 21:09:30 +02:00

823 B

CVE-2019-12278

Description

Opera through 53 on Android allows Address Bar Spoofing. Characters from several languages are displayed in Right-to-Left order, due to mishandling of several Unicode characters. The rendering mechanism, in conjunction with the "first strong character" concept, may improperly operate on a numerical IP address or an alphabetic string, leading to a spoofed URL.

POC

Reference

No PoCs from references.

Github