Multiple persistent XSS vulnerabilites in CMS BEdita v. 3.4.0

Posted by Steffen Rösemann on Jan 08

Advisory: Multiple persistent XSS vulnerabilites in CMS BEdita v. 3.4.0
Advisory ID: SROEADV-2014-10
Author: Steffen Rösemann
Affected Software: CMS BEdita v. 3.4.0 (Release-Date: 9th-May-2014)
Vendor URL: http://www.bedita.com
Vendor Status: working on a patch
CVE-ID: –

==========================
Vulnerability Description:
==========================

The CMS BEdita v. 3.4.0 (Release: 9th-May-2014) suffers multiple persistent
XSS…

Leave a Reply