CVE-2003-0943
Last modified
CVE-2003-0943 is a vulnerability of currently unknown severity. web-tools in SAP DB before 7.4.03.30 installs several services that are enabled by default, which could allow remote attackers to obtain potentially sensitive information or redirect attacks against internal databases via (1) waecho, (2) Web SQL Interface (websql), or (3) Web Database Manager (webdbm).. EPSS estimates a 1.47% chance of exploitation in the next 30 days.
Description
web-tools in SAP DB before 7.4.03.30 installs several services that are enabled by default, which could allow remote attackers to obtain potentially sensitive information or redirect attacks against internal databases via (1) waecho, (2) Web SQL Interface (websql), or (3) Web Database Manager (webdbm).
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sap | Sap Db | <= 7.4.03.29 |
References
- http://www.atstake.com/research/advisories/2003/a111703-2.txtExploit, Patch, Vendor Advisory
- http://www.atstake.com/research/advisories/2003/a111703-2.txtExploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0943?
How severe is CVE-2003-0943?
How do I fix CVE-2003-0943?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0937SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local …
- CVE-2003-0938vos24u.c in SAP database server (SAP DB) 7.4.03.27 and earli…
- CVE-2003-0939eo420_GetStringFromVarPart in veo420.c for SAP database serv…
- CVE-2003-0940Directory traversal vulnerability in sqlfopenc for web-tools…
- CVE-2003-0941web-tools in SAP DB before 7.4.03.30 allows remote attackers…
- CVE-2003-0942Buffer overflow in Web Agent Administration service in web-t…
- CVE-2003-0944Buffer overflow in the WAECHO default service in web-tools i…
- CVE-2003-0945The Web Database Manager in web-tools for SAP DB before 7.4.…
- CVE-2003-0946Format string vulnerability in clamav-milter for Clam AntiVi…
- CVE-2003-0947Buffer overflow in iwconfig, when installed setuid, allows l…
- CVE-2003-0948Buffer overflow in iwconfig allows local users to execute ar…
- CVE-2003-0949xsok 1.02 does not properly drop privileges before finding a…
Are you affected by CVE-2003-0943?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
