Nucleus CMS version 3.65 suffers from a persistent cross site scripting vulnerability.
546f34805d04034f047e4144ea4b40a6097badf77ac07bce75855a9b73741bd7
# Exploit Title: Persistent Cross Site Scripting Vulnerability in
nucleuscms
# Date: 25 July 2015
# Exploit Author: sharan kumar somana
# Vendor Homepage: http://www.nucleuscms.org
# Software Link:
http://sourceforge.net/projects/nucleuscms/?source=typ_redirect
# Version: 3.65
# Tested on: Windows 7
#################################################
nucleuscms is vulnerable for a Persistent Cross Site Scripting
Vulnerability.
The vulnerability affects 'title' parameter while adding a new item
#################################################