CVE-2008-1204

Sun Java System Access Manager 7.1, 7 2005Q4 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Administration Console in Sun Java System Access Manager 7.1 and 7 2005Q4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the (1) Help and (2) Version windows.

Scores

EPSS 0.0029
EPSS Percentile 52.3%

Classification

CWE
CWE-79
Status draft

Affected Products (10)

sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager
sun/java_system_access_manager

Timeline

Published Mar 08, 2008
Tracked Since Feb 18, 2026