![]() | |
| |||||||
| Home | Register | Projects | Blogs | FAQ | Calendar | Search | Today's Posts | Mark Forums Read | Free Directory | Free DNSReport | Tags |
| Notices |
| Advisories Discuss about all newly security flaws classed by CVE entries and reviewed by security experts |
CVE-2008-2123 (Internet Transaction Server)This is a discussion on "CVE-2008-2123 (Internet Transaction Server)" within the Advisories part of the Computer Security: Discussions section; Cross-site scripting (XSS) vulnerability in WGate in SAP Internet Transaction Server (ITS) 6.20 allows remote attackers to inject arbitrary web script or HTML via (1) a "" sequence in the ~service parameter to wgate.dll, or (2) Javascript splicing ... |
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Cross-site scripting (XSS) vulnerability in WGate in SAP Internet Transaction Server (ITS) 6.20 allows remote attackers to inject arbitrary web script or HTML via (1) a "" sequence in the ~service parameter to wgate.dll, or (2) Javascript splicing in the query string, a different vector than CVE-2006-5114. More... |
| Sponsor | ||
| ||
| |
![]() |
| Thread Tools | |
| Display Modes | |
| |