Loading...
Loading...
Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allow remote attackers to inject arbitrary HTML or web script via the (1) cntry or lang parameters to /idm/login.jsp, (2) resultsForm parameter to /idm/account/findForSelect.jsp, or (3) activeControl parameter to /idm/user/main.jsp.
January 11, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-0239
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.