CVE-2007-3613: XSS
Cross-site scripting (XSS) vulnerability in ADM:GETLOGFILE in SAP Internet Graphics Service (IGS) allows remote attackers to inject arbitrary web script or HTML via the PARAMS parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3613?
CVE-2007-3613 is considered a moderate vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2007-3613?
To fix CVE-2007-3613, apply the latest patches for the SAP Internet Graphics Server as recommended by SAP.
What types of attacks can CVE-2007-3613 facilitate?
CVE-2007-3613 can facilitate cross-site scripting attacks, allowing attackers to inject arbitrary web scripts into the application.
Which versions of SAP Internet Graphics Server are affected by CVE-2007-3613?
CVE-2007-3613 affects SAP Internet Graphics Server versions 6.40 and various 7.00 patch versions.
Is there a workaround for CVE-2007-3613?
While patching is the recommended approach, web application firewalls may provide temporary protection against CVE-2007-3613.