Active Super Shop Multi-vendor CMS Has a Dangerous Persistent XSS
==================================================================================================================
Why Persistent XSS is dangerous :
==========================================
Because of it's storage capability ..
What we can do with it :
1) Cookie Stealing / Session Hijacking.
2) Sensitive Data leak.
3) Website Defacement.
4) Send users a malicious link.
Also sometimes developers says admin users vulnerability is not dangerous. I will not agree with it.
As this is a trusted application sell from codecannyon. So I can use it to hack people by making fool with this issue.
Thanks for watching.
Note : video is unlisted only users with link can see it.