Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in SendMailServlet in the examples web application (examples/jsp/mail/sendmail.jsp) in Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.36 allows remote attackers to inject arbitrary web script or HTML via the From field and possibly other fields, related to generation of error messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Tomcat SendMailServlet 跨站脚本攻击漏洞
Vulnerability Description
Apache Tomcat 4.0.0至4.0.6版本和4.1.0至4.1.36版本的examples web应用程序(examples/jsp/mail/sendmail.jsp)的SendMailServlet中存在跨站脚本攻击漏洞。远程攻击者可以借助From字段和其它可能的字段,注入任意web脚本或HTML。该漏洞与错误信息的产生相关。
CVSS Information
N/A
Vulnerability Type
N/A