Cross-Site Scripting Vulnerabilities in Sun Java System Identity Manager
CVE-2008-0239

Currently unrated

Key Information:

Vendor

Oracle

Vendor
CVE Published:
11 January 2008

What is CVE-2008-0239?

Multiple cross-site scripting vulnerabilities exist in specific versions of Sun Java System Identity Manager. These flaws can be exploited by remote attackers to inject arbitrary HTML or web scripts into the application. Attack vectors include parameters in login forms and user account management interfaces, allowing the execution of malicious scripts in the user's browser, potentially compromising sensitive information and user sessions.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.