CVE-2023-43233 Information
Sep 30, 2023
cve
Description
A stored cross-site scripting (XSS) vulnerability in the cms/content/edit component of YZNCMS v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter.
Reference
https://github.com/yux1azhengye/mycve/blob/main/YZNCMS%201.3.0%20XSS.pdf
Share on: