Описание
Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Apache Tomcat 5.0.0 through 5.0.30 and 5.5.0 through 5.5.17 allows remote attackers to inject arbitrary web script or HTML via certain header values.
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | not-affected  | |
| edgy | not-affected  | |
| feisty | not-affected  | |
| upstream | needs-triage  | 
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Apache Tomcat 5.0.0 through 5.0.30 and 5.5.0 through 5.5.17 allows remote attackers to inject arbitrary web script or HTML via certain header values.
Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Apache Tomcat 5.0.0 through 5.0.30 and 5.5.0 through 5.5.17 allows remote attackers to inject arbitrary web script or HTML via certain header values.
Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Ap ...
ELSA-2007-0327: Important: tomcat security update (IMPORTANT)
EPSS
4.3 Medium
CVSS2