CVE-2009-4149
CA Service Desk 12.1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the web interface in CA Service Desk 12.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.
Scores
EPSS
0.0026
EPSS Percentile
49.4%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
ca/service_desk
n/a/n/a
Timeline
Published
Dec 09, 2009
Tracked Since
Feb 18, 2026