6.8
CVSSv2

CVE-2002-1567

Published: 06/10/2003 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1 allows remote malicious users to execute arbitrary web script and steal cookies via a URL with encoded newlines followed by a request to a .jsp file whose name contains the script.

Vulnerable Product Search on Vulmon Subscribe to Product

apache tomcat 4.1.0

Exploits

source: wwwsecurityfocuscom/bid/5542/info Jakarta Tomcat is a Java Servlet and JSP server produced by the Apache Software Foundation Tomcat is available for Microsoft Windows, Linux, and other Unix based operating systems A cross site scripting vulnerability has been reported in some versions of Tomcat Reportedly, if a HTTP request is ...