CVE-2006-7195

Publication date 10 May 2007

Last updated 17 July 2025


Ubuntu priority

Description

Cross-site scripting (XSS) vulnerability in implicit-objects.jsp in Apache Tomcat 5.0.0 through 5.0.30 and 5.5.0 through 5.5.17 allows remote attackers to inject arbitrary web script or HTML via certain header values.

Status

Package Ubuntu Release Status
tomcat5.5 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities