Cross-Site Scripting Vulnerabilities in Sun Java System Identity Manager
CVE-2009-1080

Currently unrated

Key Information:

Vendor

Oracle

Vendor
CVE Published:
25 March 2009

What is CVE-2009-1080?

The Sun Java System Identity Manager versions 7.0 through 8.0 are vulnerable to multiple cross-site scripting (XSS) vulnerabilities, which allow remote attackers to inject arbitrary web scripts or HTML through unspecified vectors. This flaw can potentially lead to the exposure of sensitive information or manipulation of end-user sessions.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.