Security Advisory
CVE-2021-39486
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A Stored XSS via Malicious File Upload exists in Gila CMS version 2.2.0. An attacker can use this to steal cookies, passwords or to run arbitrary code on a victims browser.