7.5
CVSSv2

CVE-2002-0682

Published: 23/07/2002 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote malicious users to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.

Vulnerable Product Search on Vulmon Subscribe to Product

apache tomcat 4.0.3

Exploits

source: wwwsecurityfocuscom/bid/5193/info A vulnerability has been reported for Apache Tomcat 403 on Microsoft Windows and Linux platforms Reportedly, it is possible for an attacker to launch a cross site scripting attack When servlet mapping is enabled, it is possible to invoke various servlets and classes and cause Apache Tomcat to ...