Open redirect vulnerability in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
2008-11-18T00:30:00.437
2025-04-09T00:30:58.490
Deferred
CVSSv2: 6.4 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:P/A:P
10.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 7.0 | Yes |
Application | sun | java_system_identity_manager | 7.1 | Yes |