PT-2008-2877 · Sun · Sun Java Server Faces

Published

2008-03-11

·

Updated

2022-05-01

·

CVE-2008-1285

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Sun Java Server Faces (JSF) versions 1.2 through 1.2 07
Description A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML.
Recommendations For Sun Java Server Faces (JSF) versions 1.2 through 1.2 07, update to version 1.2 08 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-1285
GHSA-VV6J-5X58-Q2C3
RHSA-2008:0825
RHSA-2008:0826
RHSA-2008:0827
RHSA-2008:0828

Affected Products

Sun Java Server Faces