Apache Tomcat Cross-Site Scripting (CVE-2010-4172)

Related Vulnerabilities: CVE-2010-4172  

Check Point Reference: CPAI-2010-0739 Date Published: 18 Mar 2024 Severity: Medium Last Updated: Monday 18 March, 2024 Source: Industry Reference:CVE-2010-4172
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Apache Software Foundation Tomcat 6.0.12
Apache Software Foundation Tomcat 6.0.13
Apache Software Foundation Tomcat 6.0.14
Apache Software Foundation Tomcat 6.0.15
Apache Software Foundation Tomcat 6.0.16
Apache Software Foundation Tomcat 6.0.17
Apache Software Foundation Tomcat 6.0.18
Apache Software Foundation Tomcat 6.0.19
Apache Software Foundation Tomcat 6.0.20
Apache Software Foundation Tomcat 6.0.24
Apache Software Foundation Tomcat 6.0.26
Apache Software Foundation Tomcat 6.0.27
Apache Software Foundation Tomcat 6.0.28
Apache Software Foundation Tomcat 6.0.29
Apache Software Foundation Tomcat 7.0.0 beta
Apache Software Foundation Tomcat 7.0.0 beta
Apache Software Foundation Tomcat 7.0.1
Apache Software Foundation Tomcat 7.0.2
Apache Software Foundation Tomcat 7.0.3
Apache Software Foundation Tomcat 7.0.4 Vulnerability Description A cross-site scripting vulnerability exists in Apache Tomcat. Successful exploitation of this vulnerability would allow remote attackers to inject arbitrary web script into the affected system.