← Vulnerability feed

Vulnerability record · CVE-2009-4611 · published 13 January 2010

CVE-2009-4611: Mortbay jetty improper input validation vulnerability

MMortbay · Jetty

Mort Bay Jetty 6.x through 6.1.22 and 7.0.0 writes backtrace data without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator, related to (1) a string value in the Age parameter to the default URI for the Cookie Dump Servlet in test-jetty-webapp/src/main/java/com/acme/CookieDump.java under cookie/, (2) an alphabetic value in the A parameter to jsp/expr.jsp, or (3) an alphabetic value in the Content-Length HTTP header to an arbitrary application.

7.5 CVSS 2.0 High EPSS 3.2% · top 12.2% CWE-20 · Improper input validation
7.5CVSS 2.0 base score
3.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 4 tagged exploit
16 Jun 2026Last modified by NVD

Description

Mort Bay Jetty 6.x through 6.1.22 and 7.0.0 writes backtrace data without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator, related to (1) a string value in the Age parameter to the default URI for the Cookie Dump Servlet in test-jetty-webapp/src/main/java/com/acme/CookieDump.java under cookie/, (2) an alphabetic value in the A parameter to jsp/expr.jsp, or (3) an alphabetic value in the Content-Length HTTP header to an arbitrary application.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2009-4611 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

6.1CVE-2009-5048Mortbay jetty cross-site scripting vulnerabilityCookie Dump Servlet stored XSS vulnerability in jetty though 6.1.20.EPSS 1.6%6.1CVE-2009-5049Mortbay jetty cross-site scripting vulnerabilityWebApp JSP Snoop page XSS in jetty though 6.1.21.EPSS 1.6%5.3CVE-2011-4461Oracle sun storage common array manager vulnerabilityJetty 8.1.0.RC2 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which al…EPSS 4.9%5.0CVE-2009-4609Mortbay jetty information exposure vulnerabilityThe Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via …EPSS 1.8%5.0CVE-2009-1523Mortbay jetty path traversal vulnerabilityDirectory traversal vulnerability in the HTTP server in Mort Bay Jetty 5.1.14, 6.x before 6.1.17, and 7.x through 7.0.0.M2 allows remote attackers to…EPSS 26%5.0CVE-2005-3747Mortbay jetty information exposure vulnerabilityUnspecified vulnerability in Jetty before 5.1.6 allows remote attackers to obtain source code of JSP pages, possibly involving requests for .jsp file…EPSS 4.4%4.3CVE-2009-4610Mortbay jetty cross-site scripting vulnerabilityMultiple cross-site scripting (XSS) vulnerabilities in Mort Bay Jetty 6.x and 7.0.0 allow remote attackers to inject arbitrary web script or HTML via…EPSS 3.0%4.3CVE-2009-4612Mortbay jetty cross-site scripting vulnerabilityMultiple cross-site scripting (XSS) vulnerabilities in the WebApp JSP Snoop page in Mort Bay Jetty 6.1.x through 6.1.21 allow remote attackers to inj…EPSS 3.3%

Source: NIST National Vulnerability Database (record CVE-2009-4611), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.