This CPE summary could be partial or incomplete. Please contact us for a detailed listing.


Vendor Sun First view 2008-03-07
Product Java System Access Manager Last view 2008-03-07
Version 7.0_2005q4 Type Application
Update *  
Edition solaris_x86  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
CPE Product cpe:2.3:a:sun:java_system_access_manager

Activity : Overall

Related : CVE

  Date Alert Description
4.3 2008-03-07 CVE-2008-1204

Multiple cross-site scripting (XSS) vulnerabilities in the Administration Console in Sun Java System Access Manager 7.1 and 7 2005Q4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the (1) Help and (2) Version windows.

CWE : Common Weakness Enumeration

100% (1) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')

Open Source Vulnerability Database (OSVDB)

id Description
42612 Sun Java System Access Manager Administration Console Version Window XSS
42611 Sun Java System Access Manager Administration Console Help Window XSS