/idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2008-01-11T22:00:00
Updated: 2018-10-15T20:57:01
Reserved: 2008-01-11T00:00:00
Link: CVE-2008-0240
JSON object: View
NVD Information
Status : Modified
Published: 2008-01-11T22:46:00.000
Modified: 2018-10-15T21:58:50.093
Link: CVE-2008-0240
JSON object: View
Redhat Information
No data.
CWE