CVE-2009-1934
Sun Java System Web Server 6.1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the Reverse Proxy Plug-in in Sun Java System Web Server 6.1 before SP11 allows remote attackers to inject arbitrary web script or HTML via the query string in situations that result in a 502 Gateway error.
References (9)
Scores
EPSS
0.0068
EPSS Percentile
71.2%
Classification
CWE
CWE-79
Status
draft
Affected Products (50)
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/one_web_server
sun/one_web_server
sun/one_web_server
sun/one_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
sun/java_system_web_server
... and 35 more
Timeline
Published
Jun 05, 2009
Tracked Since
Feb 18, 2026