CVE-2009-4187
Sun Java System Portal Server - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Gateway component in Sun Java System Portal Server 6.3.1, 7.1, and 7.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (4)
Scores
EPSS
0.0018
EPSS Percentile
39.1%
Classification
CWE
CWE-79
Status
published
Affected Products (7)
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
n/a/n/a
Timeline
Published
Dec 03, 2009
Tracked Since
Feb 18, 2026