CVE-2008-5117: Input Validation
Open redirect vulnerability in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5117?
CVE-2008-5117 is classified as a medium severity vulnerability due to its potential for phishing attacks.
How do I fix CVE-2008-5117?
To mitigate CVE-2008-5117, upgrade to a patched version of Sun Java System Identity Manager that addresses the open redirect issue.
Which versions of Sun Java System Identity Manager are affected by CVE-2008-5117?
CVE-2008-5117 affects versions 6.0 through 6.0 SP4, and 7.0 and 7.1 of Sun Java System Identity Manager.
What type of attacks can be performed using CVE-2008-5117?
CVE-2008-5117 can be exploited to redirect users to arbitrary websites, facilitating phishing attacks.
Is there a workaround for CVE-2008-5117?
There are no formal workarounds for CVE-2008-5117; the recommended action is to upgrade to a secure version.