Unrated severityNVD Advisory· Published Aug 23, 2012· Updated Apr 29, 2026
CVE-2009-5120
CVE-2009-5120
Description
The default configuration of Apache Tomcat in Websense Manager in Websense Web Security 7.0 and Web Filter 7.0 allows connections to TCP port 1812 from arbitrary source IP addresses, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 text to the 404 error page of a Project Woodstock service on this port.
Affected products
2- cpe:2.3:a:websense:websense_web_filter:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:websense:websense_web_security:7.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.