CVE-2008-1204: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Administration Console in Sun Java System Access Manager 7.1 and 7 2005Q4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the (1) Help and (2) Version windows.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1204?
CVE-2008-1204 is classified as a moderate severity vulnerability due to its cross-site scripting (XSS) nature.
How do I fix CVE-2008-1204?
To fix CVE-2008-1204, it is recommended to update the Sun Java System Access Manager to the latest patched version available.
What versions of Sun Java System Access Manager are affected by CVE-2008-1204?
CVE-2008-1204 affects Sun Java System Access Manager versions 7.1 and 7.0_2005Q4.
What type of vulnerability is CVE-2008-1204?
CVE-2008-1204 is a multiple cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Can CVE-2008-1204 be exploited remotely?
Yes, CVE-2008-1204 can be exploited remotely by attackers to compromise the web application.