CVE-2002-0936
CVE-2002-0936
The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).
Affected products
n/a · n/apublic PoCs found — 2
githubgithub.com/om4rsallam/Full-Attack-Lifecycle-Simulation-on-Metasploitable★ 0exploitdbwww.exploit-db.com/exploits/21534unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0095.htmlhttps://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74%40%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3%40%3Cdev.tomcat.apache.org%3Ehttp://tomcat.apache.org/security-4.htmlhttp://www.iss.net/security_center/static/9339.phphttp://www.securityfocus.com/bid/4995