Cross Site Scripting vulnerability in ABO.CMS v.5.9.3 allows an attacker to execute arbitrary code via a crafted payload to the Referer header.
No PoCs from references.
- https://github.com/SadFox/ABO.CMS-Blind-XSS