Full title: AfterLogic Pro and Lite <= 7.1.1.1 Stored XSS Vulnerability Category: web applications Platform: php XSS codes can be stored in E-Mail Body. So you can send an email to the Victim with below payload and steal the victim's cookie. # 0day.today @ http://0day.today/