Vulnerability CVE-2023-43233


Published: 2023-09-27   Modified: 2023-09-28

Description:
A stored cross-site scripting (XSS) vulnerability in the cms/content/edit component of YZNCMS v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter.

 References:
https://github.com/yux1azhengye/mycve/blob/main/YZNCMS%201.3.0%20XSS.pdf

Copyright 2026, cxsecurity.com

 

Back to Top