Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-2449 PoC — Apache Tomcat JSP示例Web应用跨站脚本执行漏洞

Source
Associated Vulnerability
Title:Apache Tomcat JSP示例Web应用跨站脚本执行漏洞 (CVE-2007-2449)
Description:Apache Tomcat是一个流行的开放源码的JSP应用服务器程序。 Apache Tomcat的示例Web应用程序中的某些JSP文件没有转义某些用户输入,允许远程攻击者通过包含有;字符的特制URI请求执行跨站脚本攻击,向用户浏览器会话注入并执行任意Web脚本或HTML代码。
Description
Apache Tomcat 4.x through 7.x contains a cross-site scripting vulnerability which an attacker can use to execute arbitrary script in the browser of an unsuspecting user in the context of the affected site.
File Snapshot

id: CVE-2007-2449 info: name: Apache Tomcat 4.x-7.x - Cross-Site Scripting author: pdteam,ritik ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.