Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) CmpctedDB and (2) Boyut parameters.Referenceshttp://bugreport.ir/index.php?/40https://www.exploit-db.com/exploits/5766https://exchange.xforce.ibmcloud.com/vulnerabilities/42953http://secunia.com/advisories/30583http://www.securityfocus.com/bid/29616