CVE
- Id
- 26860
- CVE No.
- CVE-2007-3503
- Status
- Candidate
- Description
- The Javadoc tool in Sun JDK 6 and JDK 5.0 Update 11 can generate HTML documentation pages that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- Phase
- Assigned (20070629)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
274013 | 26860 | CVE-2007-3503 | MISC:http://docs.info.apple.com/article.html?artnum=307177 | View |
274014 | 26860 | CVE-2007-3503 | APPLE:APPLE-SA-2007-12-14 | View |
274015 | 26860 | CVE-2007-3503 | URL:http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html | View |
274016 | 26860 | CVE-2007-3503 | BEA:BEA07-177.00 | View |
274017 | 26860 | CVE-2007-3503 | URL:http://dev2dev.bea.com/pub/advisory/248 | View |
274018 | 26860 | CVE-2007-3503 | GENTOO:GLSA-200709-15 | View |
274019 | 26860 | CVE-2007-3503 | URL:http://www.gentoo.org/security/en/glsa/glsa-200709-15.xml | View |
274020 | 26860 | CVE-2007-3503 | REDHAT:RHSA-2007:0818 | View |
274021 | 26860 | CVE-2007-3503 | URL:http://www.redhat.com/support/errata/RHSA-2007-0818.html | View |
274022 | 26860 | CVE-2007-3503 | REDHAT:RHSA-2007:0829 | View |
274023 | 26860 | CVE-2007-3503 | URL:http://www.redhat.com/support/errata/RHSA-2007-0829.html | View |
274024 | 26860 | CVE-2007-3503 | REDHAT:RHSA-2007:0956 | View |
274025 | 26860 | CVE-2007-3503 | URL:http://www.redhat.com/support/errata/RHSA-2007-0956.html | View |
274026 | 26860 | CVE-2007-3503 | SUNALERT:102958 | View |
274027 | 26860 | CVE-2007-3503 | URL:http://sunsolve.sun.com/search/document.do?assetkey=1-26-102958-1 | View |
274028 | 26860 | CVE-2007-3503 | BID:24690 | View |
274029 | 26860 | CVE-2007-3503 | URL:http://www.securityfocus.com/bid/24690 | View |
274030 | 26860 | CVE-2007-3503 | OSVDB:36488 | View |
274031 | 26860 | CVE-2007-3503 | URL:http://osvdb.org/36488 | View |
274032 | 26860 | CVE-2007-3503 | OVAL:oval:org.mitre.oval:def:10704 | View |
274033 | 26860 | CVE-2007-3503 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10704 | View |
274034 | 26860 | CVE-2007-3503 | VUPEN:ADV-2007-2383 | View |
274035 | 26860 | CVE-2007-3503 | URL:http://www.vupen.com/english/advisories/2007/2383 | View |
274036 | 26860 | CVE-2007-3503 | VUPEN:ADV-2007-3009 | View |
274037 | 26860 | CVE-2007-3503 | URL:http://www.vupen.com/english/advisories/2007/3009 | View |
274038 | 26860 | CVE-2007-3503 | VUPEN:ADV-2007-4224 | View |
274039 | 26860 | CVE-2007-3503 | URL:http://www.vupen.com/english/advisories/2007/4224 | View |
274040 | 26860 | CVE-2007-3503 | SECTRACK:1018327 | View |
274041 | 26860 | CVE-2007-3503 | URL:http://www.securitytracker.com/id?1018327 | View |
274042 | 26860 | CVE-2007-3503 | SECUNIA:25769 | View |
274043 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/25769 | View |
274044 | 26860 | CVE-2007-3503 | SECUNIA:26314 | View |
274045 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/26314 | View |
274046 | 26860 | CVE-2007-3503 | SECUNIA:26369 | View |
274047 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/26369 | View |
274048 | 26860 | CVE-2007-3503 | SECUNIA:26631 | View |
274049 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/26631 | View |
274050 | 26860 | CVE-2007-3503 | SECUNIA:26933 | View |
274051 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/26933 | View |
274052 | 26860 | CVE-2007-3503 | SECUNIA:27203 | View |
274053 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/27203 | View |
274054 | 26860 | CVE-2007-3503 | SECUNIA:26645 | View |
274055 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/26645 | View |
274056 | 26860 | CVE-2007-3503 | SECUNIA:28115 | View |
274057 | 26860 | CVE-2007-3503 | URL:http://secunia.com/advisories/28115 | View |
274058 | 26860 | CVE-2007-3503 | XF:sun-jdk-javadoc-xss(35168) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
57093 | JVNDB-2007-005785 | QuickTalk フォーラムにおけるディレクトリトラバーサルの脆弱性 | QuickTalk フォーラムには、ディレクトリトラバーサルの脆弱性が存在します。 | CVE-2007-3505 | 26860 | 6.4 | http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-005785.html | View |