CA’s technical support is alerting customers to a security risk with Unicenter Asset Portfolio Management, Unicenter Desktop and Server Management, and Unicenter Patch Management. The release of Tomcat as included with the products is potentially susceptible to a cross-site scripting vulnerability. CA has issued a solution to address the issue.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/80208/CA20090806-02.txt
Source: https://packetstormsecurity.com/files/80208/Unicenter-Tomcat-XSS.html

