The File Manager in CMS Made Simple through 2.2.10 has Reflected XSS via the "New name" field in a Rename action.
CVE Status: Modified
No CVSS data available
Exploit-db Github