VRDA Feed by JPCERT/CC
  Vulnerability Response Decision Assistance Feed : Information for vulnerability impact analysis
[ about VRDA Feed | JPCERT/CC



 
Vulnerability Analysis Result (Revision No : 1) [ Download XML
JVN#73653977     ( JVNDB-2009-000027 )
Sun GlassFish Enterprise Server および Sun Java System Application Server におけるクロスサイトスクリプティングの脆弱性
http://jvn.jp/jp/JVN73653977/index.html

Sun Microsystems が提供する Sun GlassFish Enterprise Server および Sun Java System Application Server には、クロスサイトスクリプティングの脆弱性が存在します。




About This Analysis Information
Analysis Information Provider:
JPCERT/CC
First Published:
2009-05-13
Source Information Category:
Advisory, Alert
Last Updated:
2009-05-13




Affected Product Tags
cpe:/a:sun:java_system_application_server:9.1     (Sun Java System Application Server 9.1)
lapt:/a:sun:glassfish_enterprise_server     (Sun GlassFish Enterprise Server)
 


Vulnerability Analysis Results
[Information Source Reliability] [?]
Low [?]

Medium [?]
X High [?]

[Impact Level] [?]
Low [?]

Low-Medium [?]
X Medium-High [?]
High [?]

[Access Required] [?]
Physical [?]

Local [?]
Non-routed [?]
X Routed [?]

[Authentication] [?]
Privileged [?]

Standard [?]
Limited [?]
X None or Unnecessary [?]

[User Interaction Required] [?]
Complex [?]

X Simple [?]
None [?]

[Technical Difficulty] [?]
High [?]

Medium-High [?]
Low-Medium [?]
X Low [?]

[Availability of Remediation] [?]
X Official Patch [?]

Official Workaround [?]
Unofficial Patch [?]
None [?]

[Incident Activity] [?]
None [?]

Exploit or PoC [?]
Activity Observed [?]

Alternatives
JVN iPedia JVNDB-2009-000027 Sun GlassFish Enterprise Sun GlassFish Enterprise Server および Sun Java System Application Server におけるクロスサイトスクリプティングの脆弱性
Sun Microsystems が提供する Sun GlassFish Enterprise Server および Sun Java System Application Server には、クロスサイトスクリプティングの脆弱性が存在します。








References

Copyright © 2009 JPCERT/CC All Rights Reserved.