Apache.Tomcat.Host.Manager.Name.XSS

description-logoDescription

This indicates an attempt to exploit an XSS vulnerability in the Apache Tomcat host-manager web application.
The vulnerability is a result of the application's failure to check user input before being returned to the user. As a result, a remote attacker can send a crafted request to execute arbitrary Javascript code on the vulnerable system.

affected-products-logoAffected Products

Apache Tomcat version 5.5.9 through 5.5.26.
Apache Tomcat version 6.0.0 through 6.0.16.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to latest version.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)