CVE-2003-0749: XSS
Published Sep 6, 2003
·Updated
Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal cookies via the ~service parameter.
Affected Software
1 affected component
SAP Internet Transaction Server=4620.2.0.323011
Event History
Sep 6, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Oct 20, 2003
Data Sourced
via NVD·04:00 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0749?
CVE-2003-0749 is classified as a medium severity Cross-site scripting vulnerability.
2
How do I fix CVE-2003-0749?
To remediate CVE-2003-0749, apply the latest patches and updates provided by SAP for the Internet Transaction Server.
3
What systems are affected by CVE-2003-0749?
CVE-2003-0749 affects SAP Internet Transaction Server version 4620.2.0.323011.
4
What type of attack is CVE-2003-0749 associated with?
CVE-2003-0749 is associated with Cross-site scripting (XSS) attacks that can lead to cookie theft.
5
Can CVE-2003-0749 affect user data?
Yes, CVE-2003-0749 can compromise user data by allowing attackers to execute scripts that steal sensitive information.