Sploitus

CVE-2002-1567

1 known exploit for CVE-2002-1567

Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1 allows remote attackers to execute arbitrary web script and steal cookies via a URL with encoded newlines followed by a request to a .jsp file whose name contains the script.

Affected products
Apache Tomcat
Apache Tomcat
= 4.1.0
Fix
Available
CVSS 2.0
6.8 MEDIUM
EPSS
27.1% (98th percentile)
NVD status
Modified
Published
2003-09-19
CVE-2002-1567 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2002-1567

Proof-of-concept code and exploit modules indexed by Sploitus