Medium severity6.1NVD Advisory· Published Aug 9, 2021· Updated Jun 17, 2026
CVE-2021-37573
CVE-2021-37573
Description
A reflected cross-site scripting (XSS) vulnerability in the web server TTiny Java Web Server and Servlet Container (TJWS) <=1.115 allows an adversary to inject malicious code on the server's "404 Page not Found" error page
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:tiny_java_web_server_project:tiny_java_web_server:*:*:*:*:*:*:*:*Range: <=1.115
- TJWS/Java Web Server and Servlet Containerdescription
- Range: <=1.115
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/163825/Tiny-Java-Web-Server-1.115-Cross-Site-Scripting.htmlnvdExploitThird Party Advisory
- seclists.org/fulldisclosure/2021/Aug/13nvdExploitMailing ListThird Party Advisory
- www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-042.txtnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.