CVE-2009-2268: XSS
Cross-site scripting (XSS) vulnerability in the Cross-Domain Controller (CDC) servlet in Sun Java System Access Manager 6 2005Q1, 7 2005Q4, and 7.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2268?
CVE-2009-2268 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2009-2268?
To fix CVE-2009-2268, upgrade to a patched version of Sun Java System Access Manager beyond the vulnerable versions listed.
What is the impact of CVE-2009-2268?
The impact of CVE-2009-2268 includes the ability for attackers to inject arbitrary web scripts or HTML, potentially leading to data theft or site defacement.
Which software versions are affected by CVE-2009-2268?
CVE-2009-2268 affects Sun Java System Access Manager versions 6.0_2005Q1, 7.0_2005Q4, and 7.1.
Is CVE-2009-2268 a local or remote vulnerability?
CVE-2009-2268 is a remote vulnerability, allowing attackers to exploit it without physical access to the affected system.