Back

CVE-2003-1037

Format string vulnerability in the WGate component for SAP Internet Transaction Server (ITS) allows remote attackers to execute arbitrary code via a high "trace level."

Published: Apr 15, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
sap internet_transaction_server *
sap internet_transaction_server *
sap internet_transaction_server *

GitHub Security Advisory GHSA-p886-x8rv-h4gv

Format string vulnerability in the WGate component for SAP Internet Transaction Server (ITS)...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.66%

Top 16% most likely to be exploited

Threat Score 30.8 / 100

Data Sources

NVD EPSS GitHub