XSS in WonderCMS 343 (SETTINGS -> SECURITY) Software link: WonderCMS 343 [wwwwondercmscom/download] @author: Antonio Díaz Description: Cross-site scripting (XSS) vulnerability in SECURITY of the SETTINGS section of WonderCMS 343 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into two fields: 'ADMIN LOG