CVE-2008-1947
Publication date 4 June 2008
Last updated 17 July 2025
Ubuntu priority
Description
Cross-site scripting (XSS) vulnerability in Apache Tomcat 5.5.9 through 5.5.26 and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the hostname attribute) to host-manager/html/add.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| tomcat5 | ||
| tomcat5.5 | ||