CVE-2008-0241: Input Validation
Open redirect vulnerability in /idm/user/login.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the nextPage parameter.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0241?
CVE-2008-0241 is classified as a high severity vulnerability due to its potential for remote exploitation and phishing attacks.
How do I fix CVE-2008-0241?
To fix CVE-2008-0241, it is recommended to upgrade to a patched version of Sun Java System Identity Manager.
What systems are affected by CVE-2008-0241?
CVE-2008-0241 affects Sun Java System Identity Manager versions 6.0 SP1 to SP3 and 7.0 and 7.1.
What type of vulnerability is CVE-2008-0241?
CVE-2008-0241 is an open redirect vulnerability that can be exploited to redirect users to arbitrary URLs.
Who is likely to be affected by CVE-2008-0241?
Organizations using vulnerable versions of Sun Java System Identity Manager are at risk of experiencing phishing attacks due to CVE-2008-0241.