PT-2008-6264 · Sun · Sun Java System Identity Manager

Published

2008-11-18

·

Updated

2017-08-08

·

CVE-2008-5118

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Sun Java System Identity Manager versions 6.0 through 6.0 SP4 Sun Java System Identity Manager version 7.0 Sun Java System Identity Manager version 7.1
Description The issue allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via unspecified vectors, related to frame injection.
Recommendations For Sun Java System Identity Manager versions 6.0 through 6.0 SP4, update to a version outside of this range to mitigate the risk. For Sun Java System Identity Manager version 7.0, update to a version outside of this range to mitigate the risk. For Sun Java System Identity Manager version 7.1, update to a version outside of this range to mitigate the risk.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2008-5118

Affected Products

Sun Java System Identity Manager