Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SAP Internet Transaction Server Cross Site Scripting Vulnerability

The 'wgate.dll' componenet of SAP Internet Transaction Server has been reported prone to cross-site scripting attacks. The issue occurs due to a lack of sufficient sanitization performed on data supplied to the 'wgate.dll' library. Exploitation could allow theft of cookie-based authentication credentials or other attacks







 

Privacy Statement
Copyright 2008, SecurityFocus