XSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including 5.4). helpwindow.jsp has reflected XSS via all parameters, as demonstrated by the sgdadmin/faces/com_sun_web_ui/help/helpwindow.jsp windowTitle parameter.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T11:37:11.388Z
Reserved: 2018-11-22T00:00:00
Link: CVE-2018-19439
No data.
Status : Modified
Published: 2018-12-13T19:29:00.620
Modified: 2024-11-21T03:57:55.167
Link: CVE-2018-19439
No data.
OpenCVE Enrichment
No data.