Lucene search

K
nvd[email protected]NVD:CVE-2008-1204
HistoryMar 08, 2008 - 12:44 a.m.

CVE-2008-1204

2008-03-0800:44:00
CWE-79
web.nvd.nist.gov

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.8 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.2%

Multiple cross-site scripting (XSS) vulnerabilities in the Administration Console in Sun Java System Access Manager 7.1 and 7 2005Q4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the (1) Help and (2) Version windows.

Affected configurations

NVD
Node
sunjava_system_access_managerMatch7.0linux
OR
sunjava_system_access_managerMatch7.0_2005q4hp-ux
OR
sunjava_system_access_managerMatch7.0_2005q4solaris_sparc
OR
sunjava_system_access_managerMatch7.0_2005q4solaris_x86
OR
sunjava_system_access_managerMatch7.0_2005q4windows
OR
sunjava_system_access_managerMatch7.1hp-ux
OR
sunjava_system_access_managerMatch7.1linux
OR
sunjava_system_access_managerMatch7.1solaris_sparc
OR
sunjava_system_access_managerMatch7.1solaris_x86
OR
sunjava_system_access_managerMatch7.1windows

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.8 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.2%

Related for NVD:CVE-2008-1204