VYPR
Medium severity6.1NVD Advisory· Published Jul 1, 2024· Updated Jun 17, 2026

CVE-2024-6050

CVE-2024-6050

Description

Improper Neutralization of Input During Web Page Generation vulnerability in SOKRATES-software SOWA OPAC allows a Reflected Cross-Site Scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects SOWA OPAC software in versions from 4.0 before 4.9.10, from 5.0 before 6.2.12.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:sokrates:sowa_opac:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:sokrates:sowa_opac:*:*:*:*:*:*:*:*range: >=4.0,<4.9.10
    • (no CPE)range: from 4.0 before 4.9.10, from 5.0 before 6.2.12
    • (no CPE)range: 4.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.