Apache Tomcat DOS Device Name Cross Site Scripting Vulnerability
BID:5194
Info
Apache Tomcat DOS Device Name Cross Site Scripting Vulnerability
| Bugtraq ID: | 5194 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 10 2002 12:00AM |
| Updated: | Jul 10 2002 12:00AM |
| Credit: | Discovery credited to Matt Moore <[email protected]>. |
| Vulnerable: |
Apache Tomcat 4.0.3 |
| Not Vulnerable: | |
Discussion
Apache Tomcat DOS Device Name Cross Site Scripting Vulnerability
A vulnerability has been reported for Apache Tomcat 4.0.3 on a Microsoft Windows platform. Reportedly, it is possible for an attacker to launch a cross site scripting attack.
When making a request for a DOS device file name, Tomcat will throw an exception and respond with an error message. It is also possible for information to be appended to the DOS device when making a request.
A vulnerability has been reported for Apache Tomcat 4.0.3 on a Microsoft Windows platform. Reportedly, it is possible for an attacker to launch a cross site scripting attack.
When making a request for a DOS device file name, Tomcat will throw an exception and respond with an error message. It is also possible for information to be appended to the DOS device when making a request.
Exploit / POC
Apache Tomcat DOS Device Name Cross Site Scripting Vulnerability
The following proof of concept ws provided by Matt Moore <[email protected]>:
tomcat-server/COM2.IMG%20src= "Javascript:alert(document.domain)"
The following proof of concept ws provided by Matt Moore <[email protected]>:
tomcat-server/COM2.IMG%20src= "Javascript:alert(document.domain)"
References
Apache Tomcat DOS Device Name Cross Site Scripting Vulnerability
References:
References: