Oval Definition:oval:org.opensuse.security:def:20071358
Revision Date:2017-09-27Version:1
Title:CVE-2007-1358
Description:

Cross-site scripting (XSS) vulnerability in certain applications using Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.34 allows remote attackers to inject arbitrary web script or HTML via crafted "Accept-Language headers that do not conform to RFC 2616".
Family:unixClass:vulnerability
Status:Reference(s):CVE-2007-1358
Platform(s):Novell Linux Desktop 9 SDK for x86
Novell Linux Desktop 9 SDK for x86_64
Open Enterprise Server
SUSE Linux Enterprise SDK 10 SP2
Product(s):
Definition Synopsis
  • sles10-sp2-sdk is installed
  • AND Package Information
  • tomcat5-admin-webapps less than 5.0.30-27.35
  • OR tomcat5-webapps less than 5.0.30-27.35
  • OR tomcat5 less than 5.0.30-27.35
  • BACK