Multiple cross-site scripting (XSS) vulnerabilities in the (1) examples and (2) ROOT web applications for Jakarta Tomcat 3.x through 3.3.1a allow remote attackers to insert arbitrary web script or HTML.
Link | Tags |
---|---|
http://www.debian.org/security/2003/dsa-246 | patch vendor advisory |
http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/ | vendor advisory |
http://www.securityfocus.com/bid/6720 | vdb entry |
http://www.securityfocus.com/advisories/5111 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/11196 | vdb entry |
http://www.ciac.org/ciac/bulletins/n-060.shtml | third party advisory government resource |
http://www.osvdb.org/9204 | vdb entry |
http://secunia.com/advisories/7972 | third party advisory |
http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/RELEASE-NOTES-3.3.1a.txt | vendor advisory |
http://www.osvdb.org/9203 | vdb entry |