PT-2008-6260 · Sun · Sun Java System Identity Manager

Published

2008-11-18

·

Updated

2017-08-08

·

CVE-2008-5114

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Sun Java System Identity Manager versions 6.0 through 6.0 SP4 Sun Java System Identity Manager version 7.0 Sun Java System Identity Manager version 7.1
Description The issue allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, which can lead to cross-site scripting (XSS) attacks.
Recommendations For Sun Java System Identity Manager versions 6.0 through 6.0 SP4, update to a version that is not affected by this issue. For Sun Java System Identity Manager version 7.0, update to a version that is not affected by this issue. For Sun Java System Identity Manager version 7.1, update to a version that is not affected by this issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-5114

Affected Products

Sun Java System Identity Manager