CVE

Id
23299  
CVE No.
CVE-2006-7195  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Apache Tomcat 5.0.0 through 5.0.30 and 5.5.0 through 5.5.17 allows remote attackers to inject arbitrary web script or HTML via certain header values.  
Phase
Assigned (20070418)  
Votes
None (candidate not yet proposed)  
Comments