Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via unspecified vectors, related to "frame injection."
2008-11-18T00:30:00.467
2025-04-09T00:30:58.490
Deferred
CVSSv2: 4.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 6.0 | Yes |
Application | sun | java_system_identity_manager | 7.0 | Yes |
Application | sun | java_system_identity_manager | 7.1 | Yes |