Back
CVE-2003-0749
Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal cookies via the ~service parameter.
Published: Oct 20, 2003
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| sap | internet_transaction_server | 4620.2.0.323011 |
GitHub Security Advisory GHSA-j463-qv6p-7x3p
Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS)...
References (4)
- http://archives.neohapsis.com/archives/bugtraq/2003-08/0361.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/8517 Exploit, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2003-08/0361.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/8517 Exploit, Vendor Advisory
Risk Scores
CVSS Score
6.8 / 10
EPSS Score
3.69%
Top 11% most likely to be exploited
Threat Score
28.3 / 100
Data Sources
NVD
EPSS
GitHub