mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
102 lines
3.4 KiB
JSON
102 lines
3.4 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "cve@mitre.org",
|
|
"ID": "CVE-2008-5115",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Cross-site request forgery (CSRF) vulnerability in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to hijack the authentication of administrators for requests that update the password via idm/admin/changeself.jsp."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "243386",
|
|
"refsource": "SUNALERT",
|
|
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-243386-1"
|
|
},
|
|
{
|
|
"name": "32606",
|
|
"refsource": "SECUNIA",
|
|
"url": "http://secunia.com/advisories/32606"
|
|
},
|
|
{
|
|
"name": "http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr07-11",
|
|
"refsource": "MISC",
|
|
"url": "http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr07-11"
|
|
},
|
|
{
|
|
"name": "32262",
|
|
"refsource": "BID",
|
|
"url": "http://www.securityfocus.com/bid/32262"
|
|
},
|
|
{
|
|
"name": "ADV-2008-3128",
|
|
"refsource": "VUPEN",
|
|
"url": "http://www.vupen.com/english/advisories/2008/3128"
|
|
},
|
|
{
|
|
"name": "49766",
|
|
"refsource": "OSVDB",
|
|
"url": "http://osvdb.org/49766"
|
|
},
|
|
{
|
|
"name": "20081119 PR07-11: Cross-site Request Forgery (CSRF) on Sun Java System Identity Manager",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/498479/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "sun-jsim-unspecified-csrf(46553)",
|
|
"refsource": "XF",
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/46553"
|
|
},
|
|
{
|
|
"name": "1021170",
|
|
"refsource": "SECTRACK",
|
|
"url": "http://www.securitytracker.com/id?1021170"
|
|
}
|
|
]
|
|
}
|
|
} |