CVE-2003-0749
published 2003-10-20CVE-2003-0749: Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web…
PriorityP420medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
3.65%
88.3th percentile
Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal cookies via the ~service parameter.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap | internet_transaction_server | — | — |
| sap | internet_transaction_server | — | — |
| sap | internet_transaction_server | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-89hq-c5f6-69qm: Multiple cross-site scripting (XSS) vulnerabilities in wgate in SAP Internet Transaction Server (ITS) 6
ghsa_unreviewed·2022-05-01·CVSS 6.8
CVE-2006-5114 [MEDIUM] GHSA-89hq-c5f6-69qm: Multiple cross-site scripting (XSS) vulnerabilities in wgate in SAP Internet Transaction Server (ITS) 6
Multiple cross-site scripting (XSS) vulnerabilities in wgate in SAP Internet Transaction Server (ITS) 6.1 and 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) ~urlmime or (2) ~command parameter, different vectors than CVE-2003-0749.
GHSA
GHSA-j463-qv6p-7x3p: Cross-site scripting (XSS) vulnerability in wgate
ghsa_unreviewed·2022-04-29
CVE-2003-0749 [MEDIUM] GHSA-j463-qv6p-7x3p: Cross-site scripting (XSS) vulnerability in wgate
Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal cookies via the ~service parameter.
No detection rules found.
No writeups or analysis indexed.
2003-10-20
Published