First published: Tue Aug 11 2009(Updated: )
CA SiteMinder allows remote attackers to bypass cross-site scripting (XSS) protections for J2EE applications via a request containing a %00 (encoded null byte).
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun J2ee | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.