Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wjwr-3jch-479j

Опубликовано: 01 мая 2022
Источник: github
Github: Прошло ревью

Описание

Apache Tomcat SendMailServlet XSS

Cross-site scripting (XSS) vulnerability in SendMailServlet in the examples web application (examples/jsp/mail/sendmail.jsp) in Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.36 allows remote attackers to inject arbitrary web script or HTML via the From field and possibly other fields, related to generation of error messages.

Пакеты

Наименование

org.apache.tomcat:tomcat

maven
Затронутые версииВерсия исправления

>= 4.0.0, <= 4.0.6

Отсутствует

Наименование

org.apache.tomcat:tomcat

maven
Затронутые версииВерсия исправления

>= 4.1.0, <= 4.1.36

Отсутствует

EPSS

Процентиль: 97%
0.42141
Средний

Дефекты

CWE-80

Связанные уязвимости

ubuntu
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in SendMailServlet in the examples web application (examples/jsp/mail/sendmail.jsp) in Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.36 allows remote attackers to inject arbitrary web script or HTML via the From field and possibly other fields, related to generation of error messages.

nvd
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in SendMailServlet in the examples web application (examples/jsp/mail/sendmail.jsp) in Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.36 allows remote attackers to inject arbitrary web script or HTML via the From field and possibly other fields, related to generation of error messages.

debian
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in SendMailServlet in the exa ...

EPSS

Процентиль: 97%
0.42141
Средний

Дефекты

CWE-80