CVE

Id
7572  
CVE No.
CVE-2003-0748  
Status
Candidate  
Description
Directory traversal vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to read arbitrary files via .. (dot-dot backslash) sequences in the ~theme parameter and a ~template parameter with a filename followed by space characters, which can prevent SAP from effectively adding a .html extension to the filename.  
Phase
Assigned (20030904)  
Votes
None (candidate not yet proposed)  
Comments