Release date:
Updated on:
Affected Systems:
Apache Tomcat 7.0-7.0.4
Description:
--------------------------------------------------------------------------------
Bugtraq id: 45015
Cve id: CVE-2010-4172
Apache Tomcat is a popular open source JSP application server program.
Apache Tomcat has multiple cross-site scripting vulnerabilities. Attackers can exploit these vulnerabilities to steal Cookie-based authentication creden。 and perform other further attacks.
The sessionList. jsp script of the software does not properly check and filter the orderBy and sort parameter data, resulting in Cross-Site Script Execution Problems.
<* Source: Adam municating of Gotham Digital Science
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Adam Muntner of Gotham Digital Science provides the following test methods:
Http:/www.example.com/html/sessions? Path =/& amp; sort = [xss]
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Apache
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://tomcat.apache.org/