Unrated severityNVD Advisory· Published Sep 13, 2011· Updated Jun 16, 2026
CVE-2009-5097
CVE-2009-5097
Description
Palm Pre WebOS 1.1 and earlier processes JavaScript in email messages, which allows remote attackers to execute arbitrary JavaScript, as demonstrated by reading PalmDatabase.db3.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:o:hp:palm_pre_webos:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:hp:palm_pre_webos:*:*:*:*:*:*:*:*range: <=1.1.0
- cpe:2.3:o:hp:palm_pre_webos:1.0.2:*:*:*:*:*:*:*
- cpe:2.3:o:hp:palm_pre_webos:1.0.3:*:*:*:*:*:*:*
- cpe:2.3:o:hp:palm_pre_webos:1.0.4:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.