CVE-2007-6569
Summary
| CVE | CVE-2007-6569 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-12-28 21:46:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566246. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:N/AC:M/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Sun | Java System Web Proxy Server | 3.6 | All | aix | All |
| Application | Sun | Java System Web Proxy Server | 3.6 | All | hp_ux | All |
| Application | Sun | Java System Web Proxy Server | 3.6 | All | sparc | All |
| Application | Sun | Java System Web Proxy Server | 3.6 | All | windows | All |
| Application | Sun | Java System Web Proxy Server | All | All | hp_ux | All |
| Application | Sun | Java System Web Proxy Server | All | All | linux | All |
| Application | Sun | Java System Web Proxy Server | All | All | sparc | All |
| Application | Sun | Java System Web Proxy Server | All | All | windows | All |
| Application | Sun | Java System Web Proxy Server | All | All | x86 | All |
| Application | Sun | Java System Web Server | 6.1 | All | aix | All |
| Application | Sun | Java System Web Server | 6.1 | All | hp_ux | All |
| Application | Sun | Java System Web Server | 6.1 | All | linux | All |
| Application | Sun | Java System Web Server | 6.1 | All | sparc | All |
| Application | Sun | Java System Web Server | 6.1 | All | windows | All |
| Application | Sun | Java System Web Server | 6.1 | All | x86 | All |
| Application | Sun | Java System Web Server | 7.0 | All | hp_ux | All |
| Application | Sun | Java System Web Server | 7.0 | All | linux | All |
| Application | Sun | Java System Web Server | 7.0 | All | sparc | All |
| Application | Sun | Java System Web Server | 7.0 | All | windows | All |
| Application | Sun | Java System Web Server | 7.0 | All | x86 | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| sunsolve.sun.com/search/document.do | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | Patch |
| Release Notes for Sun Java System Web Proxy Server (Sun Java System Web Proxy Server 4.0.6 Release Notes) | af854a3a-2127-422b-91ae-364da2661108 | docs.sun.com | |
| Sun Java System Web Proxy Server Multiple Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Patch |
| Sun Java System Web Server / Web Proxy Server Cross-Site Scripting - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Sun Java Web Proxy Server and Sun Java Web Server Multiple Cross-Site Scripting Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.