cve/2007/CVE-2007-1358.md
2024-05-26 14:27:05 +02:00

760 B

CVE-2007-1358

Description

Cross-site scripting (XSS) vulnerability in certain applications using Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.34 allows remote attackers to inject arbitrary web script or HTML via crafted "Accept-Language headers that do not conform to RFC 2616".

POC

Reference

Github

No PoCs found on GitHub currently.