Cross-site Scripting Vulnerability in SAP Internet Transaction Server
CVE-2003-0749
Currently unrated
What is CVE-2003-0749?
A cross-site scripting vulnerability exists in the wgate.dll component of SAP Internet Transaction Server version 4620.2.0.323011. This flaw allows remote attackers to inject arbitrary web scripts through the ~service parameter, enabling them to execute malicious scripts within the context of a user's browser. This can lead to the theft of sensitive cookies and user information, posing significant risks to the affected systems.