Apache Tomcat 4.1 Cross-Site Scripting Vulnerability

Date: Wed, 21 Aug 2002 17:31:08 -0400 (EDT)
                 Author: Skinnay of Malloc()

Contact: "Skinnay" - (skinnay@skinnux.com)

Apache Tomcat is a Webserver/servlet engine available for multiple *nix
platforms and Windows platforms.

There exist a cross-site scripting vulnerability in Apache Tomcat
that may allow people to craft links to vulnerable webservers
and execute malicious instructions.


Tested on Tomcat 4.1 / Linux


Found by Skinnay of Malloc().. word.. :P