CVE-2009-0877: XSS
Published Mar 12, 2009
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Communications Express allow remote attackers to inject arbitrary web script or HTML via the (1) Full Name or (2) Subject field.
Affected Software
1 affected component
Sun Java System Communications Express
Event History
Mar 12, 2009
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:20 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0877?
The severity of CVE-2009-0877 is moderate, indicating that it can lead to cross-site scripting attacks.
2
How do I fix CVE-2009-0877?
To fix CVE-2009-0877, update Sun Java System Communications Express to the latest version that addresses these vulnerabilities.
3
What types of attacks does CVE-2009-0877 enable?
CVE-2009-0877 enables remote attackers to inject arbitrary web scripts or HTML, facilitating cross-site scripting attacks.
4
What are the affected software versions for CVE-2009-0877?
CVE-2009-0877 affects all versions of Sun Java System Communications Express.
5
Can CVE-2009-0877 be exploited without authentication?
Yes, CVE-2009-0877 can be exploited by remote attackers without requiring authentication.