Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-6050 PoC — SOKRATES-software SOWA OPAC 安全漏洞

Source
Associated Vulnerability
Title:SOKRATES-software SOWA OPAC 安全漏洞 (CVE-2024-6050)
Description:SOKRATES-software SOWA OPAC是SOKRATES-software公司的一个应用程序。将书籍和杂志的卡片目录转换为在线电子目录。 SOKRATES-software SOWA OPAC 存在安全漏洞,该漏洞源于对输入中和不当问题,可能造成反射型跨站脚本 (XSS)。
Description
Reflected XSS in SOWA OPAC
Readme
# CVE-2024-6050
Reflected XSS in SOWA OPAC
Version: from 4.0 before 4.9.10, from 5.0 before 6.2.12.
`intext:"SOWA OPAC v."`

## PoC

```
https://[domain]/index.php?KatID=0&typ=repl&plnk=q__*&fauthor=[XSS]
```
File Snapshot

[4.0K] /data/pocs/d1b41f64ebcd4e36fc45e036db0bb72ddb5fe59e └── [ 209] README.md 0 directories, 1 file
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.