This is a technical writeup describing a persistent XSS vulnerability in Custom CMS Gaming. The vulnerability allows an attacker to inject malicious scripts into profile fields, which are then executed when viewed.
Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target:Custom CMS Gaming
Auth required
Prerequisites:Access to a user account with profile editing privileges