Inject the following code into the system\modules\xdcms\language.php file in the back-end of the XDCMS enterprise management system: When editing a section, the administrator will use the editsave() function, which contains the seven injection points:
In order to patch this vulnerability, please install the official patch the XdCMS made available for supported, vulnerable instances for Spring Boot framework.