Code Execution Vulnerability in Sun Java System Access Manager and Identity Server
CVE-2008-2945

Currently unrated

What is CVE-2008-2945?

Certain versions of Sun Java System Access Manager and Identity Server have a flaw in the processing of XSLT stylesheets during XML signature verification. This weakness can be exploited by attackers who craft a malicious stylesheet, potentially leading to unauthorized execution of arbitrary code in a vulnerable environment.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2008-2945 : Code Execution Vulnerability in Sun Java System Access Manager and Identity Server