Vulnerabilities > CVE-2001-0829 - Unspecified vulnerability in Apache Tomcat 3.2.1

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
apache
nessus

Summary

A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error message.

Vulnerable Configurations

Part Description Count
Application
Apache
1

Nessus

NASL familyWeb Servers
NASL idTOMCAT_3_2_2.NASL
descriptionThe instance of Apache Tomcat 3.x listening on the remote host is affected by a cross-site scripting vulnerability. An attacker is able to embed JavaScript into a request for a JSP file creating an error condition. The request is not sanitized before being displayed on the application error page.
last seen2020-06-01
modified2020-06-02
plugin id50448
published2010-11-02
reporterThis script is Copyright (C) 2010-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/50448
titleApache Tomcat 3.x < 3.2.2 JSP Error Condition XSS