Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cr98-r54j-j39h

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

/idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."

/idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."

EPSS

Процентиль: 92%
0.07365
Низкий

Дефекты

CWE-79

Связанные уязвимости

nvd
около 18 лет назад

/idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."

EPSS

Процентиль: 92%
0.07365
Низкий

Дефекты

CWE-79