CVE-2009-4187

Sun Java System Portal Server - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Gateway component in Sun Java System Portal Server 6.3.1, 7.1, and 7.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0018
EPSS Percentile 39.1%

Classification

CWE
CWE-79
Status published

Affected Products (7)

sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
sun/java_system_portal_server
n/a/n/a

Timeline

Published Dec 03, 2009
Tracked Since Feb 18, 2026