A cross-site scripting vulnerability is present in Admidio prior to version 4.0.12. The reflected cross-site scripting vulnerability occurs because redirect.php does not properly validate the value of the url parameter. Through this vulnerability, an attacker is capable to execute malicious scripts.
View the template here CVE-2021-43810.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2021-43810