Moderate severityNVD Advisory· Published Dec 6, 2001· Updated Apr 16, 2026
CVE-2001-0829
CVE-2001-0829
Description
A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error message.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.apache.tomcat:tomcatMaven | <= 3.2.1 | — |
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- jakarta.apache.org/tomcat/tomcat-3.2-doc/readmenvdPatchVendor Advisory
- www.securityfocus.com/bid/2982nvdExploitPatchVendor Advisory
- github.com/advisories/GHSA-58hj-575g-5j25ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2001-0829ghsaADVISORY
- web.archive.org/web/20021108153830/http://online.securityfocus.com/bid/2982ghsaWEB
- web.archive.org/web/20021201182720/http://jakarta.apache.org/tomcat/tomcat-3.2-doc/readmeghsaWEB
- web.archive.org/web/20061208015126/http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.htmlghsaWEB
- archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.htmlnvd
News mentions
0No linked articles in our index yet.