
Proof-of-Concept-Exploit für die reflektierte XSS-Schwachstelle (CVE-2024-6050) in SOWA OPAC Versionen 4.0-4.9.10 und 5.0-6.2.12, mit einem funktionierenden Payload-Beispiel.
Reflektiertes XSS in SOWA OPAC
Version: ab 4.0 vor 4.9.10, ab 5.0 vor 6.2.12.
intext:"SOWA OPAC v."
https://[domain]/index.php?KatID=0&typ=repl&plnk=q__*&fauthor=[XSS]