CVE-2002-0682
Apache Tomcat - XSS
Title source: ruleDescription
Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Matt Moore · textremotelinux
https://www.exploit-db.com/exploits/21604
References (8)
Scores
EPSS
0.8306
EPSS Percentile
99.3%
Details
Status
published
Products (1)
apache/tomcat
4.0.3
Published
Jul 23, 2002
Tracked Since
Feb 18, 2026