CVE-2002-0682

Apache Tomcat - XSS

Title source: rule

Description

Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Matt Moore · textremotelinux
https://www.exploit-db.com/exploits/21604

Scores

EPSS 0.8306
EPSS Percentile 99.3%

Details

Status published
Products (1)
apache/tomcat 4.0.3
Published Jul 23, 2002
Tracked Since Feb 18, 2026