RiteCMS v3.0.0 contains a reflected XSS caused by unsanitized input in the main_menu/edit_section component, letting attackers execute arbitrary scripts in the context of the victim's browser.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view