Cross Site Scripting Vulnerability in MaxSite CMS by MaxSite
CVE-2026-37700
4.1MEDIUM
What is CVE-2026-37700?
MaxSite CMS version 109.2 is affected by a Cross Site Scripting vulnerability that allows remote attackers to exploit the file upload endpoint accessed through the admin_page. This flaw can enable unauthorized access to sensitive information, posing serious risks to the integrity and confidentiality of the web application.
