Cross-Site Scripting Vulnerability in CSZ CMS by Desencrypt
CVE-2023-39599
5.4MEDIUM
What is CVE-2023-39599?
A Cross-Site Scripting (XSS) vulnerability has been identified in CSZ CMS version 1.3.0, which enables attackers to inject and execute arbitrary code. By exploiting the Social Settings parameter with a specially crafted payload, malicious users can potentially take control of the targeted application, leading to data theft or further system compromise.
