6.1
CVSSv3

CVE-2020-28350

Published: 19/11/2020 Updated: 27/11/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

A Cross Site Scripting (XSS) vulnerability exists in OPAC in Sokrates SOWA SowaSQL up to and including 5.6.1 via the sowacgi.php typ parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sokrates sowasql

Exploits

Sokrates SOWA SowaSQL suffers from a cross site scripting vulnerability The module SOWAWWW was fixed in version 4816, whereas the module SOWAOPAC was fixed in version 562 ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> SOWAOPAC Reflected Cross Site Scripting <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: hacker () marek ...