// For flags

CVE-2009-1219

Sun Java System Calendar Server 6.3 - Duplicate URI Request Denial of Service

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Sun Calendar Express Web Server in Sun ONE Calendar Server 6.0 and Sun Java System Calendar Server 6 2004Q2 through 6.3-7.01 allows remote attackers to cause a denial of service (daemon crash) via multiple requests to the default URI with alphabetic characters in the tzid parameter.

Sun Calendar Express Web Server en Sun ONE Calendar Server v6.0 y Sun Java System Calendar Server 6 2004Q2 hasta 6.3-7.01 permite a atacantes remotos provocar una denegación de servicio (caída del demonio) a través de múltiples peticiones de la URI por defecto con caracteres alfabéticos en el parámetro "tzid".

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2009-03-31 First Exploit
  • 2009-04-01 CVE Reserved
  • 2009-04-01 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-10-10 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6
Search vendor "Sun" for product "Java System Calendar Server" and version "6"
sparc
Affected
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6.3
Search vendor "Sun" for product "Java System Calendar Server" and version "6.3"
sparc
Affected
Sun
Search vendor "Sun"
One Calendar Server
Search vendor "Sun" for product "One Calendar Server"
6.0
Search vendor "Sun" for product "One Calendar Server" and version "6.0"
sparc
Affected
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6
Search vendor "Sun" for product "Java System Calendar Server" and version "6"
x86
Affected
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6.3
Search vendor "Sun" for product "Java System Calendar Server" and version "6.3"
x86
Affected
Sun
Search vendor "Sun"
One Calendar Server
Search vendor "Sun" for product "One Calendar Server"
6.0
Search vendor "Sun" for product "One Calendar Server" and version "6.0"
x86
Affected
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6
Search vendor "Sun" for product "Java System Calendar Server" and version "6"
linux
Affected
Sun
Search vendor "Sun"
Java System Calendar Server
Search vendor "Sun" for product "Java System Calendar Server"
6.3
Search vendor "Sun" for product "Java System Calendar Server" and version "6.3"
linux
Affected
Sun
Search vendor "Sun"
One Calendar Server
Search vendor "Sun" for product "One Calendar Server"
6.0
Search vendor "Sun" for product "One Calendar Server" and version "6.0"
linux
Affected