Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Access Manager 6.1, 6.2, 6 2005Q1 (6.3), and 7 2005Q4 (7.0) before 20070129 allow remote attackers to inject arbitrary web script or HTML via the (1) goto or (2) gx-charset parameter. NOTE: some of these details are obtained from third party information.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-01-31T18:00:00
Updated: 2024-08-07T12:26:53.503Z
Reserved: 2007-01-31T00:00:00
Link: CVE-2007-0628
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-01-31T18:28:00.000
Modified: 2024-11-21T00:26:20.797
Link: CVE-2007-0628
Redhat
No data.