CVE-2011-2260 describes an unspecified vulnerability within the Administration component of Oracle GlassFish Server 2.1.1, part of the Oracle Sun Products Suite. This medium-severity vulnerability (CVSS 5.8) allows unauthenticated remote attackers to compromise confidentiality and integrity with moderate attack complexity. While the NVD description is vague, an ExploitDB entry details a persistent Cross-Site Scripting (XSS) exploit. Despite the availability of an exploit, there is no evidence of active exploitation, Metasploit or Nuclei modules, or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.1.1CPE matchmatch criteria | cpe:2.3:a:oracle:sun_products_suite:2.1.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.