mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
157 lines
6.3 KiB
JSON
157 lines
6.3 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "secalert@redhat.com",
|
|
"ID": "CVE-2006-7196",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors. NOTE: this may be related to CVE-2006-0254.1."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "http://tomcat.apache.org/security-4.html",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://tomcat.apache.org/security-4.html"
|
|
},
|
|
{
|
|
"name": "34888",
|
|
"refsource": "OSVDB",
|
|
"url": "http://osvdb.org/34888"
|
|
},
|
|
{
|
|
"name": "29242",
|
|
"refsource": "SECUNIA",
|
|
"url": "http://secunia.com/advisories/29242"
|
|
},
|
|
{
|
|
"name": "20090127 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities (Updated - v1.1)",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/500412/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "SUSE-SR:2008:005",
|
|
"refsource": "SUSE",
|
|
"url": "http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html"
|
|
},
|
|
{
|
|
"name": "33668",
|
|
"refsource": "SECUNIA",
|
|
"url": "http://secunia.com/advisories/33668"
|
|
},
|
|
{
|
|
"name": "20090124 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/500396/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "25531",
|
|
"refsource": "BID",
|
|
"url": "http://www.securityfocus.com/bid/25531"
|
|
},
|
|
{
|
|
"name": "ADV-2007-1729",
|
|
"refsource": "VUPEN",
|
|
"url": "http://www.vupen.com/english/advisories/2007/1729"
|
|
},
|
|
{
|
|
"name": "ADV-2009-0233",
|
|
"refsource": "VUPEN",
|
|
"url": "http://www.vupen.com/english/advisories/2009/0233"
|
|
},
|
|
{
|
|
"name": "http://support.avaya.com/elmodocs2/security/ASA-2007-206.htm",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://support.avaya.com/elmodocs2/security/ASA-2007-206.htm"
|
|
},
|
|
{
|
|
"name": "20070904 Apache tomcat calendar example cross site scripting and cross site request forgery vulnerability",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/478491/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "http://tomcat.apache.org/security-5.html",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://tomcat.apache.org/security-5.html"
|
|
},
|
|
{
|
|
"name": "RHSA-2008:0261",
|
|
"refsource": "REDHAT",
|
|
"url": "http://www.redhat.com/support/errata/RHSA-2008-0261.html"
|
|
},
|
|
{
|
|
"name": "20070905 Re: Apache tomcat calendar example cross site scripting and cross site request forgery vulnerability",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/478609/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx"
|
|
},
|
|
{
|
|
"name": "http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540"
|
|
},
|
|
{
|
|
"refsource": "MLIST",
|
|
"name": "[tomcat-dev] 20190319 svn commit: r1855831 [21/30] - in /tomcat/site/trunk: ./ docs/ xdocs/",
|
|
"url": "https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3E"
|
|
},
|
|
{
|
|
"refsource": "MLIST",
|
|
"name": "[tomcat-dev] 20190325 svn commit: r1856174 [19/29] - in /tomcat/site/trunk: docs/ xdocs/ xdocs/stylesheets/",
|
|
"url": "https://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3E"
|
|
},
|
|
{
|
|
"refsource": "MLIST",
|
|
"name": "[tomcat-dev] 20200213 svn commit: r1873980 [24/34] - /tomcat/site/trunk/docs/",
|
|
"url": "https://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3@%3Cdev.tomcat.apache.org%3E"
|
|
}
|
|
]
|
|
}
|
|
} |