#########################################################################################
# Exploit Title : QUICK.CMS Cross site scripting
# Google Dork :
# Exploit Author: Mikayil Ilyas
# Vendor Homepage: https://opensolution.org
# Contact : mikayil.ilyasov@gmail.com
# Software Link: https://opensolution.org/download/home.html?sFile=Quick.Cms_v6.6-en.zip
# version : v6.6
# Date : 16.06.2019
# Tested on : Windows 10 , Kali Linux
# CVE :
##########################################################################################
+ Exploit :
log in admin panel (admin.php) and click to add new page. XSS payload write in "name" textarea.
screnshoots
1 : https://i.hizliresim.com/JVX0mJ.png
2 : https://i.hizliresim.com/OrkGm4.png