Vulnerability CVE-2023-36970


Published: 2023-07-06

Description:
A Cross-site scripting (XSS) vulnerability in CMS Made Simple v2.2.17 allows remote attackers to inject arbitrary web script or HTML via the File Upload function.

 References:
https://okankurtulus.com.tr/2023/06/27/cms-made-simple-v2-2-17-stored-cross-site-scripting-xss-authenticated/

Copyright 2026, cxsecurity.com

 

Back to Top