Description
Improper Neutralization of Input During Web Page Generation vulnerability in SOKRATES-software SOWA OPAC allows a Reflected Cross-Site Scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects SOWA OPAC software in versions from 4.0 before 4.9.10, from 5.0 before 6.2.12.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47208 | Improper Neutralization of Input During Web Page Generation vulnerability in SOKRATES-software SOWA OPAC allows a Reflected Cross-Site Scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects SOWA OPAC software in versions from 4.0 before 4.9.10, from 5.0 before 6.2.12. |
References
History
Thu, 15 Aug 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sokrates
Sokrates sowa Opac |
|
| CPEs | cpe:2.3:a:sokrates:sowa_opac:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sokrates
Sokrates sowa Opac |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2024-08-01T21:25:03.198Z
Reserved: 2024-06-17T09:13:23.481Z
Link: CVE-2024-6050
Updated: 2024-08-01T21:25:03.198Z
Status : Modified
Published: 2024-07-01T14:15:05.893
Modified: 2024-11-21T09:48:50.687
Link: CVE-2024-6050
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD