4.3

CVE-2007-3613

Exploit

Cross-site scripting (XSS) vulnerability in ADM:GETLOGFILE in SAP Internet Graphics Service (IGS) allows remote attackers to inject arbitrary web script or HTML via the PARAMS parameter.

Data is provided by the National Vulnerability Database (NVD)
SAPInternet Graphics Server Version6.40
SAPInternet Graphics Server Version6.40_patch_11
SAPInternet Graphics Server Version6.40_patch_12
SAPInternet Graphics Server Version6.40_patch_13
SAPInternet Graphics Server Version6.40_patch_14
SAPInternet Graphics Server Version6.40_patch_15
SAPInternet Graphics Server Version7.00_patch_1
SAPInternet Graphics Server Version7.00_patch_2
SAPInternet Graphics Server Version7.00_patch_3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 16.78% 0.947
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N