Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action.
- http://packetstormsecurity.org/1006-exploits/ecomatcms-xss.txt
- http://securityreason.com/securityalert/8517
No PoCs found on GitHub currently.