XSS vulnerability in sNews

2010-10-20 Thread advisory
Vulnerability ID: HTB22638 Reference: http://www.htbridge.ch/advisory/xss_vulnerability_in_snews_1.html Product: sNews Vendor: sNews Team ( tp://www.snewscms.com/ ) Vulnerable Version: 1.7 and probably prior versions Vendor Notification: 05 October 2010 Vulnerability Type: XSS (Cross Site

XSS vulnerability in sNews

2010-10-20 Thread advisory
Vulnerability ID: HTB22637 Reference: http://www.htbridge.ch/advisory/xss_vulnerability_in_snews.html Product: sNews Vendor: sNews Team ( http://www.snewscms.com/ ) Vulnerable Version: 1.7 and probably prior versions Vendor Notification: 05 October 2010 Vulnerability Type: Stored XSS (Cross Site