Candidate: CVE-2009-5049 PublicDate: 2019-11-06 19:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-5049 Description: WebApp JSP Snoop page XSS in jetty though 6.1.21. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=553644 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N [6.1 MEDIUM] Patches_jetty: upstream_jetty: released (6.1.22-1) hardy_jetty: ignored (reached end-of-life) lucid_jetty: not-affected (6.1.22-1ubuntu1) maverick_jetty: not-affected natty_jetty: not-affected oneiric_jetty: not-affected devel_jetty: not-affected