CVE-2006-5486

SUN Iplanet Messaging Server - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Webmail in Sun Java System Messaging Server 6.0 through 6.2 and iPlanet Messaging Server 5.2 allows remote attackers to execute arbitrary Javascript via crafted messages.

Scores

EPSS 0.0055
EPSS Percentile 67.6%

Classification

CWE
CWE-79
Status draft

Affected Products (4)

sun/iplanet_messaging_server
sun/java_system_messaging_server
sun/java_system_messaging_server
sun/java_system_messaging_server

Timeline

Published Oct 24, 2006
Tracked Since Feb 18, 2026