Security Research

CVE-2023-43341 Evolution CMS Reflected XSS: Reflected Attack Surface in the Admin Panel

#Vulnerability Analysis#Code Audit#Web Security
CVE-2023-43341 Evolution CMS Reflected XSS: Reflected Attack Surface in the Admin Panel

Evolution CMS lacks escape on multiple parameters in the admin panel — URLs crafted by attackers directly trigger XSS when an admin clicks them, giving full backend control.

Unlock to view this content.