Cross Site Scripting Vulnerability in YzmCMS by YzmCMS
CVE-2020-19118
5.4MEDIUM
What is CVE-2020-19118?
A Cross Site Scripting (XSS) vulnerability has been identified in YzmCMS 5.2, which allows attackers to inject malicious scripts via the site_code parameter in the admin interface. Successful exploitation of this vulnerability could enable unauthorized access to sensitive information and manipulate user sessions, potentially leading to further security breaches.