First published: Wed Mar 25 2009(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID 19033.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Java System Identity Manager | =7.1.1 | |
Sun Java System Identity Manager | =7.0 | |
Sun Java System Identity Manager | =7.1 | |
Sun Java System Identity Manager | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-1080 is considered a high severity vulnerability due to the potential for attackers to execute arbitrary web scripts.
To fix CVE-2009-1080, it is recommended to upgrade to a version of Sun Java System Identity Manager that is not affected by this vulnerability.
CVE-2009-1080 affects Sun Java System Identity Manager versions 7.0, 7.1, 7.1.1, and 8.0.
Yes, CVE-2009-1080 can potentially lead to data breaches if exploited, as attackers can inject scripts to manipulate user data.
Remote attackers can exploit CVE-2009-1080 without authentication, making it a significant security risk.