Skip to main content

Vendor/product archive

sap / internet_transaction_server CVEs

Beta · best-effort

9 CVEs tagged to sap / internet_transaction_server0 Critical, 2 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2018-11415

Published May 24, 2018

SAP Internet Transaction Server (ITS) 6200.X.X has Reflected Cross Site Scripting (XSS) via certain wgate URIs. NOTE: the vendor has reportedly indicated that there will not be an…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2123

Published May 9, 2008

Cross-site scripting (XSS) vulnerability in WGate in SAP Internet Transaction Server (ITS) 6.20 allows remote attackers to inject arbitrary web script or HTML via (1) a "<>" seque…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5114

Published Oct 3, 2006

Multiple cross-site scripting (XSS) vulnerabilities in wgate in SAP Internet Transaction Server (ITS) 6.1 and 6.2 allow remote attackers to inject arbitrary web script or HTML via…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1036

Published Apr 15, 2004

Multiple buffer overflows in the AGate component for SAP Internet Transaction Server (ITS) allow remote attackers to execute arbitrary code via long (1) ~command, (2) ~runtimemode…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1037

Published Apr 15, 2004

Format string vulnerability in the WGate component for SAP Internet Transaction Server (ITS) allows remote attackers to execute arbitrary code via a high "trace level."

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1038

Published Apr 15, 2004

The AGate component for SAP Internet Transaction Server (ITS) allows remote attackers to obtain sensitive information via a ~command parameter with an AgateInstallCheck value, whi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0747

Published Oct 20, 2003

wgate.dll in SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to obtain potentially sensitive information such as directory structure and operating sy…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0748

Published Oct 20, 2003

Directory traversal vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to read arbitrary files via ..\ (dot-dot backslash…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0749

Published Oct 20, 2003

Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal co…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1