Cross Site Scripting vulnerability in phpcmsv9 v.9.6.3 allows a remote attacker to escalate privileges via the menu interface of the member center of the background administrator.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds