CVE-2023-43233 Information

Description

A stored cross-site scripting (XSS) vulnerability in the cms/content/edit component of YZNCMS v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter.

Reference

https://github.com/yux1azhengye/mycve/blob/main/YZNCMS%201.3.0%20XSS.pdf

Share on: