AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-4139

MEDIUM · CVSS 6.8 EPSS 0.82%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-07-27 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-4139
Severity
MEDIUM
CVSS
6.8
EPSS
0.82%
Java

Original NVD Description

A flaw was found in Spacewalk Java site packages. This cross-site request forgery (CSRF) vulnerability allows a remote attacker to hijack the authentication of arbitrary users. This can lead to unauthorized actions, including disabling user accounts, adding new user accounts, or escalating privileges by modifying existing user accounts to have administrator access.