Description
Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the calendar examples application in Apache Tomcat 4.1.31 allows remote attackers to add events as arbitrary users via the time and description parameters.
Remediation
References
Related Vulnerabilities
Jboss EAP Configuration Vulnerability (CVE-2008-3519)
Oracle Application Server CVE-2010-0066 Vulnerability (CVE-2010-0066)
Oracle JRE CVE-2013-2440 Vulnerability (CVE-2013-2440)
WebLogic CVE-2020-2546 Vulnerability (CVE-2020-2546)
WordPress Plugin Gravity Forms FreshDesk Cross-Site Scripting (1.2.8)