Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-76500
HistoryJun 27, 2022 - 12:00 a.m.

Apache Tomcat Cross-Site Scripting Vulnerability

2022-06-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
17

0.001 Low

EPSS

Percentile

44.1%

Apache Tomcat is a lightweight Web application server from the Apache Foundation. The application implements support for Servlet and JavaServer Page (JSP).A cross-site scripting vulnerability exists in Apache Tomcat, which stems from the fact that the form authentication example in the sample web application does not filter the data provided by the user. An attacker could exploit this vulnerability to execute JavaScript code on the client side.