Cross-Site Scripting Vulnerability in 74CMS by Congcong
CVE-2020-22421
6.1MEDIUM
What is CVE-2020-22421?
74CMS v6.0.4 has a cross-site scripting (XSS) vulnerability that can be exploited through a specially crafted URL at /index.php?m=&c=help&a=help_list&key. This flaw allows malicious actors to inject arbitrary script code into web pages viewed by users, potentially leading to unauthorized actions and data leakage.