Medium severity6.1NVD Advisory· Published Mar 10, 2022· Updated Jun 17, 2026
CVE-2022-24177
CVE-2022-24177
Description
A cross-site scripting (XSS) vulnerability in the component cgi-bin/ej.cgi of Ex libris ALEPH 500 v18.1 and v20 allows attackers to execute arbitrary web scripts or HTML.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:exlibrisgroup:aleph_500:18.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:exlibrisgroup:aleph_500:18.1:*:*:*:*:*:*:*
- cpe:2.3:a:exlibrisgroup:aleph_500:20.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/zhao1231/cve_payload/issues/1nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.