Known Vulnerabilities for Java System Access Manager by Sun
Listed below are 10 of the newest known vulnerabilities associated with "Java System Access Manager" by "Sun".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2010-4444 | Unspecified vulnerability in Oracle Sun Java System Access Manager and Oracle OpenSSO 7, 7.1, and 8 allows remote attackers t... | 6.8 - MEDIUM | 2011-01-19 | 2017-08-17 |
| CVE-2010-0311 | Unspecified vulnerability in Sun Java System Identity Manager (aka IdM) 8.1.0.5 and 8.1.0.6, when Sun Java System Access Mana... | 6.8 - MEDIUM | 2010-01-14 | 2017-08-17 |
| CVE-2009-2713 | The CDCServlet component in Sun Java System Access Manager 7.0 2005Q4 and 7.1, when Cross Domain Single Sign On (CDSSO) is en... | 4.3 - MEDIUM | 2009-08-07 | 2009-08-15 |
| CVE-2009-2712 | Sun Java System Access Manager 6.3 2005Q1, 7.0 2005Q4, and 7.1; and OpenSSO Enterprise 8.0; when AMConfig.properties enables ... | 2.1 - LOW | 2009-08-07 | 2009-08-15 |
| CVE-2009-2268 | Cross-site scripting (XSS) vulnerability in the Cross-Domain Controller (CDC) servlet in Sun Java System Access Manager 6 200... | 2.6 - LOW | 2009-07-01 | 2010-05-25 |
| CVE-2009-0348 | The login module in Sun Java System Access Manager 6 2005Q1 (aka 6.3), 7 2005Q4 (aka 7.0), and 7.1 responds differently to a ... | 5 - MEDIUM | 2009-01-29 | 2017-08-08 |
| CVE-2009-0170 | Sun Java System Access Manager 6.3 2005Q1, 7 2005Q4, and 7.1 allows remote authenticated users with console privileges to dis... | 6 - MEDIUM | 2009-01-16 | 2018-10-30 |
| CVE-2009-0169 | Sun Java System Access Manager 7.1 allows remote authenticated sub-realm administrators to gain privileges, as demonstrated b... | 9 - HIGH | 2009-01-16 | 2017-08-08 |
| CVE-2008-2705 | Unspecified vulnerability in Sun Java System Access Manager (AM) 7.1, when used with certain versions and configurations of S... | 9.3 - HIGH | 2008-06-16 | 2017-08-08 |
| CVE-2008-1204 | Multiple cross-site scripting (XSS) vulnerabilities in the Administration Console in Sun Java System Access Manager 7.1 and 7... | 4.3 - MEDIUM | 2008-03-08 | 2017-08-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Sun | Java System Access Manager | 7.1 | All | All | All |
| Application | Sun | Java System Access Manager | 7.0 | All | All | All |
| Application | Sun | Java System Access Manager | 6.3_2005q4 | All | All | All |
| Application | Sun | Java System Access Manager | 6.3 | All | All | All |
| Application | Sun | Java System Access Manager | 6.3 | 2005q4 | All | All |
| Application | Sun | Java System Access Manager | 6.2 | All | All | All |
| Application | Sun | Java System Access Manager | 6.1 | All | All | All |
| Application | Sun | Java System Access Manager | - | All | All | All |