CVE-2007-2450
published 2007-06-14CVE-2007-2450: Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0…
PriorityP415low3.5CVSS 2.0
AVNACMAuSCNIPAN
EPSS
3.29%
87.2th percentile
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.
Affected
87 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
| apache | tomcat | — | — |
CVSS provenance
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
vendor_redhat3.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Apache Tomcat vulnerable to Cross-site Scripting
osv·2022-05-01
CVE-2007-2450 [LOW] Apache Tomcat vulnerable to Cross-site Scripting
Apache Tomcat vulnerable to Cross-site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.
GHSA
Apache Tomcat vulnerable to Cross-site Scripting
ghsa·2022-05-01
CVE-2007-2450 [LOW] CWE-79 Apache Tomcat vulnerable to Cross-site Scripting
Apache Tomcat vulnerable to Cross-site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.
Red Hat
tomcat host manager XSS
vendor_redhat·2007-06-13·CVSS 3.5
CVE-2007-2450 [LOW] CWE-79 tomcat host manager XSS
tomcat host manager XSS
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-5333 Improve cookie parsing for tomcat5 [rhn_satellite_5.0]
bugzilla·2008-01-10·CVSS 4.3
CVE-2007-5333 [MEDIUM] CVE-2007-5333 Improve cookie parsing for tomcat5 [rhn_satellite_5.0]
CVE-2007-5333 Improve cookie parsing for tomcat5 [rhn_satellite_5.0]
rhn_satellite_5.0 tracking bug: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes in the 'blocks' bugs.
For the security issues handling process overview see: http://intranet.corp.redhat.com/ic/intranet/SecurityZStreamFAQ
[bug automatically created by: add-tracking-bugs]
Discussion:
[root@rlx-3-18 RPMS]# ls tomcat5-5.0.30-0jpp_9rh.noarch.rpm
tomcat5-5.0.30-0jpp_9rh.noarch.rpm
[root@rlx-3-18 RPMS]# pwd
/tmp/mnt/RPMS
[root@rlx-3-18 RPMS]#
verified
---
This is not a bug. The real issue that was talked about is actually:
private bug Bugzilla Bug 430731: CVE-2007-5461 CVE-2007-3385 CVE-2007-3382
CVE-2007-1358 CVE-2007-1355 CVE-2007
Bugzilla
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F8]
bugzilla·2007-11-02·CVSS 2.6
CVE-2007-1358 [LOW] CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F8]
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F8]
F8 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
tomcat5-5.5.25-1jpp.1.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
Bugzilla
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F8]
bugzilla·2007-11-01·CVSS 3.5
CVE-2007-5461 [LOW] CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F8]
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F8]
F8 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
Ping on this. Please do an update, as an patch is available (see blocking bugs).
---
Vivek, please add fix for this to fix for CVE-2007-2450 and roll an update.
---
tomcat5-5.5.25-1jpp.1.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
Bugzilla
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [FC6]
bugzilla·2007-10-16·CVSS 3.5
CVE-2007-5461 [LOW] CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [FC6]
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [FC6]
FC6 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
Ping on this. Please do an update, as an patch is available (see blocking bugs).
---
Vivek, please add fix for this to fix for CVE-2007-2450 and roll an update.
---
This is included in 5.5.25 release. Closing bug.
Bugzilla
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [Fdevel]
bugzilla·2007-10-16·CVSS 3.5
CVE-2007-5461 [LOW] CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [Fdevel]
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [Fdevel]
Fdevel tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
Vivek, please add fix for this to fix for CVE-2007-2450 and roll an update.
---
Tomcat 5.5.25 packages in all supported Fedora releases have a fix for this bug.
Closing this bug.
Bugzilla
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F7]
bugzilla·2007-10-16·CVSS 3.5
CVE-2007-5461 [LOW] CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F7]
CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV [F7]
F7 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
Ping on this. Please do an update, as an patch is available (see blocking bugs).
---
Vivek, please add fix for this to fix for CVE-2007-2450 and roll an update.
---
This is included in 5.5.25 release. Closing bug.
Bugzilla
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F7]
bugzilla·2007-06-19·CVSS 2.6
CVE-2007-1358 [LOW] CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F7]
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [F7]
F7 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
This is well over 4 months old. Please do an update as soon as possible.
---
tomcat5-5.5.25-1jpp.1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
Bugzilla
CVE-2007-2450 tomcat host manager XSS
bugzilla·2007-06-19·CVSS 3.5
CVE-2007-2450 [LOW] CVE-2007-2450 tomcat host manager XSS
CVE-2007-2450 tomcat host manager XSS
According to http://tomcat.apache.org/security-5.html
low: Cross-site scripting CVE-2007-2450
The Manager and Host Manager web applications did not escape user provided data
before including it in the output. This enabled a XSS attack. These applciations
now filter the data before use. This issue may be mitigated by logging out
(closing the browser) of the application once the management tasks have been
completed.
Affects: 5.0.0-5.0.30, 5.5.0-5.5.24
Example:
alert()"
Content-Type: image/gif' VALUE="abc">
Discussion:
tomcat5-5.5.25-1jpp.1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
---
tomcat5-5.5.25-1jpp.1.fc8 has been pushed to the Fedora 8 stable repository.
Bugzilla
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [Fdevel]
bugzilla·2007-06-19·CVSS 2.6
CVE-2007-1358 [LOW] CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [Fdevel]
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [Fdevel]
Fdevel tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
This is well over 4 months old. Please do an update as soon as possible.
---
This is already fixed in 5.5.25. Closing bug.
Bugzilla
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [FC6]
bugzilla·2007-06-19·CVSS 2.6
CVE-2007-1358 [LOW] CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [FC6]
CVE-2007-1358 CVE-2007-2449 CVE-2007-2450 tomcat5 various flaws [FC6]
FC6 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
This is well over 4 months old. Please do an update as soon as possible.
---
This is already fixed in 5.5.25. Closing bug.
http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspxhttp://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01178795http://jvn.jp/jp/JVN%2307100457/index.htmlhttp://lists.apple.com/archives/security-announce/2008//Jun/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlhttp://secunia.com/advisories/25678http://secunia.com/advisories/26076http://secunia.com/advisories/27037http://secunia.com/advisories/27727http://secunia.com/advisories/28549http://secunia.com/advisories/30802http://secunia.com/advisories/30899http://secunia.com/advisories/30908http://secunia.com/advisories/33668http://securityreason.com/securityalert/2813http://sunsolve.sun.com/search/document.do?assetkey=1-26-239312-1http://support.apple.com/kb/HT2163http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540http://tomcat.apache.org/security-4.htmlhttp://tomcat.apache.org/security-5.htmlhttp://tomcat.apache.org/security-6.htmlhttp://www.debian.org/security/2008/dsa-1468http://www.mandriva.com/security/advisories?name=MDKSA-2007:241http://www.osvdb.org/36079http://www.redhat.com/support/errata/RHSA-2007-0569.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/archive/1/471357/100/0/threadedhttp://www.securityfocus.com/archive/1/500396/100/0/threadedhttp://www.securityfocus.com/archive/1/500412/100/0/threadedhttp://www.securityfocus.com/bid/24475http://www.securitytracker.com/id?1018245http://www.vupen.com/english/advisories/2007/2213http://www.vupen.com/english/advisories/2007/3386http://www.vupen.com/english/advisories/2008/1979/referenceshttp://www.vupen.com/english/advisories/2008/1981/referenceshttp://www.vupen.com/english/advisories/2009/0233https://exchange.xforce.ibmcloud.com/vulnerabilities/34868https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3%40%3Cdev.tomcat.apache.org%3Ehttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11287https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.htmlhttp://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspxhttp://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01178795http://jvn.jp/jp/JVN%2307100457/index.htmlhttp://lists.apple.com/archives/security-announce/2008//Jun/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlhttp://secunia.com/advisories/25678http://secunia.com/advisories/26076http://secunia.com/advisories/27037http://secunia.com/advisories/27727http://secunia.com/advisories/28549http://secunia.com/advisories/30802http://secunia.com/advisories/30899http://secunia.com/advisories/30908http://secunia.com/advisories/33668http://securityreason.com/securityalert/2813http://sunsolve.sun.com/search/document.do?assetkey=1-26-239312-1http://support.apple.com/kb/HT2163http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540http://tomcat.apache.org/security-4.htmlhttp://tomcat.apache.org/security-5.htmlhttp://tomcat.apache.org/security-6.htmlhttp://www.debian.org/security/2008/dsa-1468http://www.mandriva.com/security/advisories?name=MDKSA-2007:241http://www.osvdb.org/36079http://www.redhat.com/support/errata/RHSA-2007-0569.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/archive/1/471357/100/0/threadedhttp://www.securityfocus.com/archive/1/500396/100/0/threadedhttp://www.securityfocus.com/archive/1/500412/100/0/threadedhttp://www.securityfocus.com/bid/24475http://www.securitytracker.com/id?1018245http://www.vupen.com/english/advisories/2007/2213http://www.vupen.com/english/advisories/2007/3386http://www.vupen.com/english/advisories/2008/1979/referenceshttp://www.vupen.com/english/advisories/2008/1981/referenceshttp://www.vupen.com/english/advisories/2009/0233https://exchange.xforce.ibmcloud.com/vulnerabilities/34868https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3%40%3Cdev.tomcat.apache.org%3Ehttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11287https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.html
2007-06-14
Published