Explore Vulnerabilities SQL Injection Cross-Site Scripting (XSS) Buffer Overflow Denial of Service Remote Code Execution Remote File Include Directory Traversal HTML Injection Stack Overflow Authentication Bypass
by: tmrswrr vendor: Monstra CMS Project Show More Monstra 3.0.4 – Stored Cross-Site Scripting (XSS) This exploit allows an attacker to inject malicious scripts into the Monstra CMS admin panel. By editing a page and inserting a payload in the Name field, an attacker can execute arbitrary JavaScript code on the affected website. 4.3 CVSS MEDIUM Stored Cross-Site Scripting (XSS) 79 CWE Product Name Monstra Platforms Tested Affected Version From: 3.0.4 To: 3.0.4 2023