CVE-2009-1357

CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the HELP_PAGE parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:java_system_delegated_administrator:6.2:-:sparc:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.3:-:sparc:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.4:-:sparc:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:sun:java_system_delegated_administrator:6.2:-:x86:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.3:-:x86:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.4:-:x86:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:sun:java_system_delegated_administrator:6.3:-:linux:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.4:-:linux:*:*:*:*:*
cpe:2.3:a:sun:java_system_delegated_administrator:6.2:-:linux:*:*:*:*:*

Information

Published : 2009-04-23 10:30

Updated : 2018-10-10 12:36


NVD link : CVE-2009-1357

Mitre link : CVE-2009-1357


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

sun

  • java_system_delegated_administrator