Open redirect vulnerability in console/faces/jsp/login/BeginLogin.jsp in Sun Java Web Console 3.0.2 through 3.0.5 and Solaris 10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the redirect_url parameter.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-21-125950-18-1 - Patch | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-21-125952-18-1 - Patch | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-21-136987-02-1 - Patch | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-26-243786-1 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/32771 - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/47257 - |
Information
Published : 2008-12-12 18:30
Updated : 2024-11-21 00:54
NVD link : CVE-2008-5550
Mitre link : CVE-2008-5550
CVE.ORG link : CVE-2008-5550
JSON object : View
Products Affected
sun
- sunos
- solaris
- java_web_console
CWE